CVE
- Id
- 13082
- CVE No.
- CVE-2005-1876
- Status
- Candidate
- Description
- Direct code injection vulnerability in CuteNews 1.3.6 and earlier allows remote attackers with administrative privileges to execute arbitrary PHP code via certain inputs that are injected into a template (.tpl) file.
- Phase
- Assigned (20050608)
- Votes
- None (candidate not yet proposed)
- Comments