CVE-2017-1000148
high
CVSS v3
8.8
CVSS v2
6.5
VIR risk
8.8
Description
Mahara 15.04 before 15.04.8 and 15.10 before 15.10.4 and 16.04 before 16.04.2 are vulnerable to PHP code execution as Mahara would pass portions of the XML through the PHP "unserialize()" function when importing a skin from an XML file.
Predictions
Exploit likelihood
92%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — https://bugs.launchpad.net/mahara/+bug/1508684
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| mahara | mahara | 15.04 | |
| mahara | mahara | 15.04.0 | |
| mahara | mahara | 15.04.1 | |
| mahara | mahara | 15.04.2 | |
| mahara | mahara | 15.04.3 | |
| mahara | mahara | 15.04.4 | |
| mahara | mahara | 15.04.5 | |
| mahara | mahara | 15.04.6 | |
| mahara | mahara | 15.04.7 | |
| mahara | mahara | 16.04 | |
| mahara | mahara | 16.04.0 | |
| mahara | mahara | 16.04.1 | |
| mahara | mahara | 15.10.0 | |
| mahara | mahara | 15.10.1 | |
| mahara | mahara | 15.10.2 | |
| mahara | mahara | 15.10.3 | |
References
CWEs
CWE-502
Verify integrity in audit chain (admin only). AS-IS.