7.5
CVSSv2

CVE-2014-6389

Published: 06/10/2014 Updated: 08/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

backup.php in PHPCompta/NOALYSS prior to 6.7.2 allows remote malicious users to execute arbitrary commands via shell metacharacters in the d parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

phpcompta phpcompta\\/noalyss

Exploits

Vulnerability title: Remote Command Execution in PHPCompta/NOALYSS CVE: CVE-2014-6389 Vendor: PHPCompta Product: PHPCompta/NOALYSS Affected version: 671 5638 Fixed version: 672 Reported by: Jerzy Kramarz Details: PhpCompta 671-2 does not validate the syntax of the commands when processing backup requests from users It is possible to abuse ...
PHPCompta/NOALYSS version 671 5638 suffers from a remote command execution vulnerability ...