Vulnerabilities (CVE)

Filtered by vendor Tiny Issue Project Subscribe
Filtered by product Tiny Issue
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-9002 2 Pixeline, Tiny Issue Project 2 Bugs, Tiny Issue 2024-02-04 7.5 HIGH 9.8 CRITICAL
An issue was discovered in Tiny Issue 1.3.1 and pixeline Bugs through 1.3.2c. install/config-setup.php allows remote attackers to execute arbitrary PHP code via the database_host parameter if the installer remains present in its original directory after installation is completed.