Record summary

CVE-2007-5693 has a selected CVSS score of 6.0; EIP currently links 1 catalogued exploit.

Description

Eval injection vulnerability in the translation module (translator.php) in SiteBar 3.3.8 allows remote authenticated users to execute arbitrary PHP code via the edit parameter in an upd cmd action, a different vulnerability than CVE-2007-5492.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBSiteBar 3.3.8 - '/translator.php?upd/cmd/Action/edit' Arbitrary PHP Code ExecutionExploitDB exploitby Robert BuchholzNot analyzed1 file
ExploitDB

PoC details

References

11