Vulnerabilities > Smarty > Smarty > 2.6.22

DATE CVE VULNERABILITY TITLE RISK
2009-05-18 CVE-2009-1669 Improper Input Validation vulnerability in Smarty 2.6.22
The smarty_function_math function in libs/plugins/function.math.php in Smarty 2.6.22 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in the equation attribute of the math function.
network
low complexity
smarty CWE-20
critical
10.0