admin/save-settings.php in Chadha PHPKB Standard Multi-Language 9 allows remote attackers to achieve Code Execution by injecting PHP code into any POST parameter when saving global settings.
References
Configurations
Information
Published : 2020-03-12 14:15
Updated : 2021-07-21 11:39
NVD link : CVE-2020-10389
Mitre link : CVE-2020-10389
JSON object : View
Products Affected
chadhaajay
- phpkb
CWE
CWE-20
Improper Input Validation
