Junglewise Threat Intelligence

CVE-2015-5467: Yii2 allows attackers to execute any local .php file via a relative path in the view parameter

CVE-2015-5467 · Severity: low · CVSS 3.1 · Published 2023-09-21

Technologies: yiisoft/yii2 (Packagist). Vendors: Packagist.

Executive brief

Yii2 allows attackers to execute any local .php file via a relative path in the view parameter

Affected products

  • Packagist yiisoft/yii2

Related threats