cve/2017/CVE-2017-1000480.md
2024-05-26 14:27:05 +02:00

675 B

CVE-2017-1000480

Description

Smarty 3 before 3.1.32 is vulnerable to a PHP code injection when calling fetch() or display() functions on custom resources that does not sanitize template name.

POC

Reference

No PoCs from references.

Github