Vulnerabilities
Vulnerable Software
Syscp Team:  >> Syscp  >> 1.2.10  Security Vulnerabilities
scripts/cronscript.php in SysCP 1.2.15 and earlier includes and executes arbitrary PHP scripts that are referenced by the panel_cronscript table in the SysCP database, which allows attackers with database write privileges to execute arbitrary code by constructing a PHP file and adding its filename to this table.
CVSS Score
7.5
EPSS Score
0.009
Published
2007-02-08
Eval injection vulnerability in the template engine for SysCP 1.2.10 and earlier allows remote attackers to execute arbitrary PHP code via a string containing the code within "{" and "}" (curly bracket) characters, which are processed by the PHP eval function.
CVSS Score
7.5
EPSS Score
0.007
Published
2005-08-16


Contact Us

Shodan ® - All rights reserved