CVE-2007-6550

form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.
Configurations

Configuration 1

cpe:2.3:a:pmos_helpdesk:pmos_helpdesk:*:*:*:*:*:*:*:*

Information

Published : 2007-12-28 12:46

Updated : 2017-09-29 01:29


NVD link : CVE-2007-6550

Mitre link : CVE-2007-6550

Products Affected
No products.
CWE