baigoStudio baigoSSO v3.0.1 allows remote malicious users to execute arbitrary PHP code via the first form field of a configuration screen, because this code is written to the BG_SITE_NAME field in the opt_base.inc.php file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
baigo baigo sso 3.0.1 |