Back to search
CVE-2014-9185
Published: Dec 19, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Static code injection vulnerability in install.php in Morfy CMS 1.05 allows remote authenticated users to inject arbitrary PHP code into config.php via the site_url parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20141217 Morfy CMS v1.05 - Command Execution Vulnerability
mailing-list
x_refsource_FULLDISC
http://www.vulnerability-lab.com/get_content.php?id=1367
x_refsource_MISC
https://github.com/Awilum/monstra-cms/issues/351
x_refsource_MISC
20141217 Morfy CMS v1.05 - Command Execution Vulnerability
mailing-list
x_refsource_BUGTRAQ
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now