An issue in mojoPortal v.2.7.0.0 allows a remote attacker to execute arbitrary code via a crafted script to the layout.master skin file at the Skin management component.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Mojoportal |
Mojoportal |
2.7.0.0 (including) |
2.7.0.0 (including) |
References