Critical severity9.8NVD Advisory· Published Jun 18, 2017· Updated May 13, 2026
CVE-2017-9741
CVE-2017-9741
Description
install/make-config.php in ProjectSend r754 allows remote attackers to execute arbitrary PHP code via the dbprefix parameter, related to replacing TABLES_PREFIX in the configuration file.
Affected products
1- cpe:2.3:a:projectsend:projectsend:r754:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/XiaoZhis/ProjectSend/issues/1nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.