PoC Index

CVE-2007-6550

HIGH 7.5EPSS 6.8%

form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
6.84% chance of exploitation in the next 30 days, 94th percentile
Published
2007-12-28
Updated
2024-08-07

ExploitDB entries (1)

References

Related