CVE-2013-2184
Publication date 27 March 2015
Last updated 24 July 2024
Ubuntu priority
Description
Movable Type before 5.2.6 does not properly use the Storable::thaw function, which allows remote attackers to execute arbitrary code via the comment_state parameter.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| movabletype-opensource | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |