Unrated severityNVD Advisory· Published Oct 12, 2007· Updated Apr 23, 2026
CVE-2007-5423
CVE-2007-5423
Description
tiki-graph_formula.php in TikiWiki 1.9.8 allows remote attackers to execute arbitrary code via PHP sequences in the f array parameter, which are processed by create_function.
Affected products
1- cpe:2.3:a:tiki:tikiwiki_cms\/groupware:1.9.8:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
15- securityvulns.ru/Sdocument162.htmlnvdExploit
- www.securityfocus.com/bid/26006nvdExploit
- bugs.gentoo.org/show_bug.cginvd
- osvdb.org/40478nvd
- secunia.com/advisories/27190nvd
- secunia.com/advisories/27344nvd
- securityreason.com/securityalert/3216nvd
- sourceforge.net/forum/forum.phpnvd
- sourceforge.net/project/shownotes.phpnvd
- www.gentoo.org/security/en/glsa/glsa-200710-21.xmlnvd
- www.securityfocus.com/archive/1/482006/100/0/threadednvd
- www.securityfocus.com/archive/1/482128/100/0/threadednvd
- www.vupen.com/english/advisories/2007/3492nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/37076nvd
- www.exploit-db.com/exploits/4509nvd
News mentions
0No linked articles in our index yet.