Vulnerabilities > CVE-2005-0887 - Unspecified vulnerability in Michael Dean Double Choco Latte

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
michael-dean
exploit available

Summary

Eval injection vulnerability in Double Choco Latte before 0.9.4.3 allows remote attackers to execute arbitrary PHP code via the menuAction variable in (1) functions.inc.php or (2) main.php, which causes code to be injected into an eval statement.

Exploit-Db

descriptionDouble Choco Latte 0.9.3/0.9.4 main.php Arbitrary PHP Code Execution. CVE-2005-0887 . Webapps exploit for php platform
idEDB-ID:25271
last seen2016-02-03
modified2005-03-24
published2005-03-24
reporterJames Bercegay
sourcehttps://www.exploit-db.com/download/25271/
titleDouble Choco Latte 0.9.3/0.9.4 main.php Arbitrary PHP Code Execution