Lucene search

K
prionPRIOn knowledge basePRION:CVE-2013-4446
HistoryDec 07, 2013 - 8:55 p.m.

Design/Logic Flaw

2013-12-0720:55:00
PRIOn knowledge base
www.prio-n.com
1

8.4 High

AI Score

Confidence

Low

0.013 Low

EPSS

Percentile

85.6%

The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal, when using a version of PHP that does not support the json_decode function, allows remote attackers to execute arbitrary PHP code via unspecified vectors related to Ajax operations, possibly involving eval injection.

8.4 High

AI Score

Confidence

Low

0.013 Low

EPSS

Percentile

85.6%

Related for PRION:CVE-2013-4446