← Back to CVE List
CVE-2017-9741
install/make-config.php in ProjectSend r754 allows remote attackers to execute arbitrary PHP code via the dbprefix parameter, related to replacing TABLES_PREFIX in the configuration file.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt