Vulnerability Details CVE-2010-2099
bbcode/php.bb in e107 0.7.20 and earlier does not perform access control checks for all inputs that could contain the php bbcode tag, which allows remote attackers to execute arbitrary PHP code, as demonstrated using the toEmail method in contact.php, related to invocations of the toHTML method.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.008
EPSS Ranking 73.4%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2010-2099
-
-
cpe:2.3:a:e107:e107:0.545
-
cpe:2.3:a:e107:e107:0.547
-
cpe:2.3:a:e107:e107:0.548
-
cpe:2.3:a:e107:e107:0.549
-
cpe:2.3:a:e107:e107:0.551
-
cpe:2.3:a:e107:e107:0.552
-
cpe:2.3:a:e107:e107:0.553
-
cpe:2.3:a:e107:e107:0.554
-
cpe:2.3:a:e107:e107:0.555
-
cpe:2.3:a:e107:e107:0.600
-
cpe:2.3:a:e107:e107:0.601
-
cpe:2.3:a:e107:e107:0.602
-
cpe:2.3:a:e107:e107:0.603
-
cpe:2.3:a:e107:e107:0.604
-
cpe:2.3:a:e107:e107:0.605
-
cpe:2.3:a:e107:e107:0.606
-
cpe:2.3:a:e107:e107:0.607
-
cpe:2.3:a:e107:e107:0.608
-
cpe:2.3:a:e107:e107:0.609
-
cpe:2.3:a:e107:e107:0.610
-
cpe:2.3:a:e107:e107:0.611
-
cpe:2.3:a:e107:e107:0.612
-
cpe:2.3:a:e107:e107:0.613
-
cpe:2.3:a:e107:e107:0.614
-
cpe:2.3:a:e107:e107:0.615
-
cpe:2.3:a:e107:e107:0.615a
-
cpe:2.3:a:e107:e107:0.616
-
cpe:2.3:a:e107:e107:0.617
-
cpe:2.3:a:e107:e107:0.6171
-
cpe:2.3:a:e107:e107:0.6172
-
cpe:2.3:a:e107:e107:0.6173
-
cpe:2.3:a:e107:e107:0.6174
-
cpe:2.3:a:e107:e107:0.6175
-
cpe:2.3:a:e107:e107:0.6_10
-
cpe:2.3:a:e107:e107:0.6_11
-
cpe:2.3:a:e107:e107:0.6_12
-
cpe:2.3:a:e107:e107:0.6_13
-
cpe:2.3:a:e107:e107:0.6_14
-
cpe:2.3:a:e107:e107:0.6_15
-
cpe:2.3:a:e107:e107:0.6_15a
-
-
cpe:2.3:a:e107:e107:0.7.0
-
cpe:2.3:a:e107:e107:0.7.1
-
cpe:2.3:a:e107:e107:0.7.10
-
cpe:2.3:a:e107:e107:0.7.11
-
cpe:2.3:a:e107:e107:0.7.12
-
cpe:2.3:a:e107:e107:0.7.13
-
cpe:2.3:a:e107:e107:0.7.14
-
cpe:2.3:a:e107:e107:0.7.15
-
cpe:2.3:a:e107:e107:0.7.16
-
cpe:2.3:a:e107:e107:0.7.17
-
cpe:2.3:a:e107:e107:0.7.18
-
cpe:2.3:a:e107:e107:0.7.19
-
cpe:2.3:a:e107:e107:0.7.2
-
cpe:2.3:a:e107:e107:0.7.20
-
cpe:2.3:a:e107:e107:0.7.3
-
cpe:2.3:a:e107:e107:0.7.4
-
cpe:2.3:a:e107:e107:0.7.5
-
cpe:2.3:a:e107:e107:0.7.6
-
cpe:2.3:a:e107:e107:0.7.7
-
cpe:2.3:a:e107:e107:0.7.8
-
cpe:2.3:a:e107:e107:0.7.9