SOY CMS v3.0.2 allows remote malicious users to execute arbitrary PHP code via a <?php substring in the second text box. NOTE: the vendor indicates that there was an assumption that the content is "made editable on its own.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
brassica soy cms 3.0.2 |