Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno group manager allows PHP Local File Inclusion.This issue affects Opigno group manager: from 0.0.0 before 3.1.1.
References
History

Fri, 10 Jan 2025 22:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Thu, 09 Jan 2025 19:30:00 +0000

Type Values Removed Values Added
Description Improper Neutralization of Directives in Statically Saved Code ('Static Code Injection') vulnerability in Drupal Opigno group manager allows PHP Local File Inclusion.This issue affects Opigno group manager: from 0.0.0 before 3.1.1.
Title Opigno group manager - Critical - Arbitrary PHP code execution - SA-CONTRIB-2024-027
Weaknesses CWE-96
References

cve-icon MITRE

Status: PUBLISHED

Assigner: drupal

Published: 2025-01-09T19:15:18.382Z

Updated: 2025-01-10T21:27:31.833Z

Reserved: 2025-01-09T18:27:58.262Z

Link: CVE-2024-13263

cve-icon Vulnrichment

Updated: 2025-01-10T21:27:22.404Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-01-09T20:15:35.007

Modified: 2025-01-10T22:15:25.777

Link: CVE-2024-13263

cve-icon Redhat

No data.