Vulnerabilities > CVE-2005-0887 - Unspecified vulnerability in Michael Dean Double Choco Latte
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Eval injection vulnerability in Double Choco Latte before 0.9.4.3 allows remote attackers to execute arbitrary PHP code via the menuAction variable in (1) functions.inc.php or (2) main.php, which causes code to be injected into an eval statement.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | Double Choco Latte 0.9.3/0.9.4 main.php Arbitrary PHP Code Execution. CVE-2005-0887 . Webapps exploit for php platform |
id | EDB-ID:25271 |
last seen | 2016-02-03 |
modified | 2005-03-24 |
published | 2005-03-24 |
reporter | James Bercegay |
source | https://www.exploit-db.com/download/25271/ |
title | Double Choco Latte 0.9.3/0.9.4 main.php Arbitrary PHP Code Execution |