CVE-2014-5085

CVE-2014-5085

A Command Execution vulnerability exists in Sphider Plus 3.2 due to insufficient sanitization of fwrite to conf.php, which could let a remote malicious user execute arbitrary code. CVE-2014-5085 pertains to instances of fwrite in Sphider Plus, but do not exist in either Sphider or Sphider Pro.

Source: CVE-2014-5085

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다