Security Advisory

CVE-2008-0300

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-03-11 23:00:00
Last updated 2024-08-07 07:39:34
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

mapFiler.php in Mapbender 2.4 to 2.4.4 allows remote attackers to execute arbitrary PHP code via PHP code sequences in the factor parameter, which are not properly handled when accessing a filename that contains those sequences.