← back
CVE-2008-5090

CVE-2008-5090

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 4.6%
exploitation probability
4.6%top 9% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code embedded in bbcode in the email parameter, which is processed by the preg_replace function with the eval switch.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.