CVE-2008-5071
Yoxel < 1.23beta - Code Injection
Title source: ruleDescription
Multiple eval injection vulnerabilities in itpm_estimate.php in Yoxel 1.23beta and earlier allow remote authenticated users to execute arbitrary PHP code via the proj_id parameter.
Exploits (1)
Scores
EPSS
0.0406
EPSS Percentile
88.3%
Classification
CWE
CWE-94
Status
draft
Affected Products (21)
yoxel/yoxel
< 1.23beta
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
yoxel/yoxel
... and 6 more
Timeline
Published
Nov 14, 2008
Tracked Since
Feb 18, 2026