← Back

CVE-2008-6761

nvd nist
Published: Apr 28, 2009Modified: Apr 23, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Static code injection vulnerability in admin/install.php in Flexcustomer 0.0.6 might allow remote attackers to inject arbitrary PHP code into const.inc.php via the installdbname parameter (aka the Database Name field). NOTE: the installation instructions specify deleting admin/install.php.

Affected (1)

1 product
Flexcustomer0.0.6
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

References (4)

Timeline

No history available yet.