Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-6550
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-6550

Description:
form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/39274

SAID
  Secunia Advisory: SA28201

OSVDB
  42662

MILW0RM
  http://www.milw0rm.com/exploits/4789

BID
  27032


Return to the previous page.