Required CVE Record Information
Description
Eventum before 2.3.5 allows remote attackers to reinstall the application via direct request to /setup/index.php.
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 4 Total
- securityfocus.com: 20140127 Multiple Vulnerabilities in Eventum mailing-listx_transferred
- http://bazaar.launchpad.net/~eventum-developers/eventum/trunk/revision/4666 x_transferred
- https://www.htbridge.com/advisory/HTB23198 x_transferred
- https://bugs.launchpad.net/eventum/+bug/1271499 x_transferred