CVE-2007-5056: Code Injection
Eval injection vulnerability in adodb-perf-module.inc.php in ADOdb Lite 1.42 and earlier, as used in products including CMS Made Simple, SAPID CMF, Journalness, PacerCMS, and Open-Realty, allows remote attackers to execute arbitrary code via PHP sequences in the lastmodule parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5056?
CVE-2007-5056 has a moderate severity rating due to the potential for remote code execution.
How do I fix CVE-2007-5056?
To fix CVE-2007-5056, upgrade ADOdb Lite to version 1.43 or later.
What products are impacted by CVE-2007-5056?
CVE-2007-5056 impacts ADOdb Lite versions up to 1.42 and various applications including CMS Made Simple, SAPID CMF, and Open-Realty.
Can CVE-2007-5056 be exploited remotely?
Yes, CVE-2007-5056 can be exploited remotely by attackers to execute arbitrary PHP code.
What does CVE-2007-5056 affect specifically?
CVE-2007-5056 affects the 'last_module' parameter in the adodb-perf-module.inc.php file of ADOdb Lite.