CVE-2007-5593
Publication date 19 October 2007
Last updated 24 July 2024
Ubuntu priority
Description
install.php in Drupal 5.x before 5.3, when the configured database server is not reachable, allows remote attackers to execute arbitrary code via vectors that cause settings.php to be modified.