10
CVSSv2

CVE-2008-5963

Published: 23/01/2009 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Eval injection vulnerability in library/setup/rpc.php in Gravity Getting Things Done (GTD) 0.4.5 and previous versions allows remote malicious users to execute arbitrary PHP code via the objectname parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

gravity-gtd gravity-gtd 0.4

gravity-gtd gravity-gtd

gravity-gtd gravity-gtd 0.3

gravity-gtd gravity-gtd 0.2

Exploits

:::::::- :::::: ::: ;;, `';, ;; ;;;`;;;;, `;;; `[[ [[[[' [[[ [[[[[ '[[ $$, $$$$ $$$ $$$ "Y$c$$ 888_,o8P'88 d888 888 Y88 MMMMP"` "YmmMMMM"" MMM YM [ Discovered by dun \ dun[at]strcpypl ] ##################################################### # [ gravity-gtd <= 04 ...