Unspecified vulnerability in VCEngine.php in v-creator before 1.3-pre3, when the VC_CRYPTO_METHOD option is OPENSSL, allows remote attackers to execute arbitrary commands, possibly due to problems in the (1) encrypt and (2) decrypt functions.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/25560 | vdb entry |
http://sourceforge.net/forum/forum.php?forum_id=557129 | |
http://www.securityfocus.com/bid/17328 | vdb entry |
http://secunia.com/advisories/19453 | third party advisory patch vendor advisory |
http://www.osvdb.org/24304 | vdb entry |
https://sourceforge.net/p/vcreator/news/2006/03/v-creator-v13-pre3-released/ | |
http://www.vupen.com/english/advisories/2006/1189 | vdb entry |