Summary
LotusCMS is prone to two PHP Code Execution Vulnerabilities because it fails to properly sanitize user-supplied input.
An attacker can exploit this vulnerability to execute arbitrary PHP code.
LotusCMS 3.0.3 and 3.0.5 are vulnerable
other versions may also be
affected.
References
Updated on 2015-03-25
Severity
Classification
-
CVSS Base Score: 7.5
AV:N/AC:L/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- A Really Simple Chat Multiple SQL Injection Vulnerabilities
- Apple Safari PDF Javascript Security Bypass Bypass Vulnerability
- AlstraSoft AskMe Pro 'forum_answer.php' and 'profile.php' Multiple SQL Injection Vulnerabilities
- 'research_display.php' SQL Injection Vulnerability
- Baby Gekko CMS Multiple Vulnerabilities