Lucene search

K
cvelistMitreCVELIST:CVE-2011-4825
HistoryDec 15, 2011 - 2:00 a.m.

CVE-2011-4825

2011-12-1502:00:00
mitre
www.cve.org
4
static code injection
ajax file manager
phpmyfaq
remote attackers

AI Score

7.2

Confidence

Low

EPSS

0.908

Percentile

98.9%

Static code injection vulnerability in inc/function.base.php in Ajax File and Image Manager before 1.1, as used in tinymce before 1.4.2, phpMyFAQ 2.6 before 2.6.19 and 2.7 before 2.7.1, and possibly other products, allows remote attackers to inject arbitrary PHP code into data.php via crafted parameters.

AI Score

7.2

Confidence

Low

EPSS

0.908

Percentile

98.9%