An Eval Injection issue was discovered in Znuny through 7.1.3. A user with write access to the configuration file can use this to execute a command executed by the user running the backup.pl script.
Metrics
Affected Vendors & Products
References
History
Thu, 08 May 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-95 | |
Metrics |
cvssV3_1
|
Thu, 08 May 2025 17:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An Eval Injection issue was discovered in Znuny through 7.1.3. A user with write access to the configuration file can use this to execute a command executed by the user running the backup.pl script. | |
References |
|

Status: PUBLISHED
Assigner: mitre
Published: 2025-05-08T00:00:00.000Z
Updated: 2025-05-08T18:48:11.093Z
Reserved: 2025-02-15T00:00:00.000Z
Link: CVE-2025-26845

Updated: 2025-05-08T18:48:05.473Z

Status : Awaiting Analysis
Published: 2025-05-08T17:16:01.523
Modified: 2025-05-12T17:32:52.810
Link: CVE-2025-26845

No data.