form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-12-28T00:00:00
Updated: 2024-08-07T16:11:06.039Z
Reserved: 2007-12-27T00:00:00
Link: CVE-2007-6550
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-12-28T00:46:00.000
Modified: 2024-11-21T00:40:25.280
Link: CVE-2007-6550
Redhat
No data.