Vulnerability Description
An issue was discovered in Metinfo 6.x. An attacker can leverage a race condition in the backend database backup function to execute arbitrary PHP code via admin/index.php?n=databack&c=index&a=dogetsql&tables=<?php and admin/databack/bakup_tables.php?2=file_put_contents URIs because app/system/databack/admin/index.class.php creates bakup_tables.php temporarily.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Metinfo | Metinfo | >= 6.0.0, <= 6.1.3 |
Related Weaknesses (CWE)
References
- https://github.com/jadacheng/vulnerability/blob/master/Metinfo6.x/MetInfo.mdExploitThird Party Advisory
- https://github.com/jadacheng/vulnerability/blob/master/Metinfo6.x/MetInfo.mdExploitThird Party Advisory
FAQ
What is CVE-2019-7718?
CVE-2019-7718 is a vulnerability with a CVSS score of 8.1 (HIGH). An issue was discovered in Metinfo 6.x. An attacker can leverage a race condition in the backend database backup function to execute arbitrary PHP code via admin/index.php?n=databack&c=index&a=dogetsq...
How severe is CVE-2019-7718?
CVE-2019-7718 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2019-7718?
Check the references section above for vendor advisories and patch information. Affected products include: Metinfo Metinfo.