CVE

Id
13082  
CVE No.
CVE-2005-1876  
Status
Candidate  
Description
Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges to execute arbitrary PHP code via certain inputs that are injected into a template (.tpl) file.  
Phase
Assigned (20050608)  
Votes
None (candidate not yet proposed)  
Comments