Security Advisory

CVE-2014-7178

9.3

Vulnerability Description

Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.
Published Date November 28, 2014
Official Source NIST NVD Advisory