Static code injection vulnerability in install.php in mcRefer allows remote attackers to execute arbitrary PHP code via the bgcolor parameter, which is inserted into mcrconf.inc.php.
References
Configurations
History
21 Nov 2024, 00:27
Type | Values Removed | Values Added |
---|---|---|
References | () http://osvdb.org/42619 - | |
References | () http://securityreason.com/securityalert/2283 - | |
References | () http://www.securityfocus.com/archive/1/459796/100/200/threaded - |
Information
Published : 2007-02-22 22:28
Updated : 2025-04-09 00:30
NVD link : CVE-2007-1073
Mitre link : CVE-2007-1073
CVE.ORG link : CVE-2007-1073
JSON object : View
Products Affected
mcrefer
- mcrefer
CWE