Vulnerability Details CVE-2009-1512
Static code injection vulnerability in X-Forum 0.6.2 allows remote authenticated administrators to inject arbitrary PHP code into Config.php via the adminEMail parameter to SaveConfig.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.022
EPSS Ranking 84.4%
CVSS Severity
CVSS v2 Score 6.5
Products affected by CVE-2009-1512
-
cpe:2.3:a:keir_davis:x-forum:0.6.2