File Inclusion Vulnerability in Serendipity by S9y
CVE-2016-10082
9.8CRITICAL
What is CVE-2016-10082?
The Serendipity blogging platform is susceptible to a file inclusion vulnerability due to inadequate input sanitation of the dbType POST parameter during first-time installations. This oversight can lead to potential code execution through the bundled libraries, specifically impacting the process within the include/functions_installer.inc.php file and the associated serendipity_generateFTPChecksums.php script.
