Loading
Generated remediation guidance and an executive summary. No account required.
web\ViewAction in Yii (aka Yii2) 2.x before 2.0.5 allows attackers to execute any local .php file via a relative path in the view parameeter.
Use CWE-22, Yiiframework vendor hub and Yii product page to widen CVE-2015-5467 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-58136, CVE-2023-26750 and CVE-2024-4990 for nearby disclosures in the same product family.