form.php in PMOS Help Desk 2.4 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to conduct eval injection attacks and execute arbitrary PHP code via the options array parameter.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T16:11:06.039Z
Reserved: 2007-12-27T00:00:00
Link: CVE-2007-6550

No data.

Status : Modified
Published: 2007-12-28T00:46:00.000
Modified: 2024-11-21T00:40:25.280
Link: CVE-2007-6550

No data.