CVE-2007-2141

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
19/04/2007
Last modified:
09/04/2025

Description

Direct static code injection vulnerability in shoutbox.php in ShoutPro 1.5.2 allows remote attackers to inject arbitrary PHP code into shouts.php via the shout parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:shoutpro:shoutpro:*:*:*:*:*:*:*:* 1.5.2 (including)