← Back

CVE-2009-2353

nvd nist
Published: Jul 7, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

encoder.php in eAccelerator allows remote attackers to execute arbitrary code by copying a local executable file to a location under the web root via the -o option, and then making a direct request to this file, related to upload of image files.

Affected (8)

1 product
Eaccelerator
Configuration A
8 vulnerable
Vulnerable SoftwareAffected Versions
Eaccelerator
Version 0.9.4
Version 0.9.5.1
Version 0.9.5.2
Version 0.9.5.3
Version 0.9.5
Version 0.9.5 beta1
Version 0.9.5 beta2
Version 0.9.5 rc1

Timeline

No history available yet.