Eval injection vulnerability in adodb-perf-module.inc.php in ADOdb Lite 1.42 and previous versions, as used in products including CMS Made Simple, SAPID CMF, Journalness, PacerCMS, and Open-Realty, allows remote malicious users to execute arbitrary code via PHP sequences in the last_module parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
adodb lite adodb lite |
||
pacercms pacercms |
||
sapid sapid cmf |
||
cmsmadesimple cms made simple |
||
journalness journalness |
||
open-realty open-realty |