CVE-2014-4672

EPSS 0.57%

Yii PHP Framework arbitrary PHP scripts execution

Published: 5/17/2022Modified: 12/7/2024

Description

The CDetailView widget in Yii PHP Framework 1.1.14 allows remote attackers to execute arbitrary PHP scripts via vectors related to the value property.

Affected packages (1)

References (4)