CVE-2013-4211

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
14/02/2020
Last modified:
19/02/2020

Description

A Code Execution Vulnerability exists in OpenX Ad Server 2.8.10 due to a backdoor in flowplayer-3.1.1.min.js library, which could let a remote malicious user execute arbitrary PHP code

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openx:openx:2.8.10:*:*:*:*:*:*:*