Vulnerabilities > CVE-2018-1000641 - Deserialization of Untrusted Data vulnerability in Yeswiki 201210221/201310171/201603171
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
YesWiki version <= cercopitheque beta 1 contains a PHP Object Injection vulnerability in Unserialising user entered parameter in i18n.inc.php that can result in execution of code, disclosure of information.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |