Description
PHPFusion 9.03.110 is affected by a remote code execution vulnerability. The theme function will extract a file to "webroot/themes/{Theme Folder], where an attacker can access and execute arbitrary code.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-27374 | PHPFusion 9.03.110 is affected by a remote code execution vulnerability. The theme function will extract a file to "webroot/themes/{Theme Folder], where an attacker can access and execute arbitrary code. |
References
| Link | Providers |
|---|---|
| https://github.com/PHPFusion/PHPFusion/issues/2374 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T02:27:31.850Z
Reserved: 2021-08-30T00:00:00.000Z
Link: CVE-2021-40189
No data.
Status : Modified
Published: 2021-10-11T19:15:07.587
Modified: 2024-11-21T06:23:45.020
Link: CVE-2021-40189
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD