install.php in Drupal 5.x before 5.3, when the configured database server is not reachable, allows remote attackers to execute arbitrary code via vectors that cause settings.php to be modified.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2007-10-19T23:00:00
Updated: 2024-08-07T15:39:13.620Z
Reserved: 2007-10-19T00:00:00
Link: CVE-2007-5593
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-10-19T23:17:00.000
Modified: 2024-11-21T00:38:16.347
Link: CVE-2007-5593
Redhat
No data.