PoC Index

CVE-2008-4557

HIGH 10.0EPSS 45.3%

plugins/wacko/highlight/html.php in Strawberry in CuteNews.ru 1.1.1 (aka Strawberry) allows remote attackers to execute arbitrary PHP code via the text parameter, which is inserted into an executable regular expression.

CVSS v2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
45.34% chance of exploitation in the next 30 days, 99th percentile
Published
2008-10-14
Updated
2024-08-07

ExploitDB entries (1)

References

Related