Security Advisory

CVE-2018-19053

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-11-07 05:00:00
Last updated 2024-08-05 11:30:03
Assigner mitre
State PUBLISHED

Description

PbootCMS 1.2.2 allows remote attackers to execute arbitrary PHP code by specifying a .php filename in a "SET GLOBAL general_log_file" statement, followed by a SELECT statement containing this PHP code.