{"id":"GHSA-2pmx-6mm6-6v72","summary":"Smarty arbitrary PHP code execution","details":"Smarty before 3.1.21 allows remote attackers to bypass the secure mode restrictions and execute arbitrary PHP code as demonstrated by \"{literal}\u003c{/literal}script language=php\u003e\" in a template.","aliases":["CVE-2014-8350"],"modified":"2024-12-06T05:48:06.054279Z","published":"2022-05-17T01:13:38Z","database_specific":{"nvd_published_at":"2014-11-03T16:55:00Z","cwe_ids":["CWE-94"],"severity":"HIGH","github_reviewed":true,"github_reviewed_at":"2024-04-24T22:53:34Z"},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2014-8350"},{"type":"WEB","url":"https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=765920"},{"type":"WEB","url":"https://code.google.com/p/smarty-php/source/browse/trunk/distribution/change_log.txt?r=4902"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/97725"},{"type":"PACKAGE","url":"https://github.com/smarty-php/smarty"},{"type":"WEB","url":"http://advisories.mageia.org/MGASA-2014-0468.html"},{"type":"WEB","url":"http://seclists.org/oss-sec/2014/q4/420"},{"type":"WEB","url":"http://seclists.org/oss-sec/2014/q4/421"},{"type":"WEB","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2014:221"},{"type":"WEB","url":"http://www.securityfocus.com/bid/70708"}],"affected":[{"package":{"name":"smarty/smarty","ecosystem":"Packagist","purl":"pkg:composer/smarty/smarty"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.1.21"}]}],"versions":["v2.6.24","v2.6.25","v2.6.26","v2.6.27","v2.6.28","v2.6.29","v2.6.30","v2.6.31","v2.6.33","v3.1.11","v3.1.12","v3.1.13","v3.1.14","v3.1.15","v3.1.16","v3.1.17","v3.1.18","v3.1.19","v3.1.20"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/05/GHSA-2pmx-6mm6-6v72/GHSA-2pmx-6mm6-6v72.json"}}],"schema_version":"1.9.0"}