Lucene search

K
cvelistRedhatCVELIST:CVE-2013-4446
HistoryDec 07, 2013 - 8:00 p.m.

CVE-2013-4446

2013-12-0720:00:00
redhat
www.cve.org
2

7.8 High

AI Score

Confidence

Low

0.013 Low

EPSS

Percentile

85.6%

The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal, when using a version of PHP that does not support the json_decode function, allows remote attackers to execute arbitrary PHP code via unspecified vectors related to Ajax operations, possibly involving eval injection.

7.8 High

AI Score

Confidence

Low

0.013 Low

EPSS

Percentile

85.6%

Related for CVELIST:CVE-2013-4446