Posted by Egidio Romano on Nov 29
—————————————————————–
Tuleap <= 7.6-4 (register.php) PHP Object Injection Vulnerability
—————————————————————–
[-] Software Links:
https://www.tuleap.org/
https://www.enalean.com/
[-] Affected Versions:
Version 7.6-4 and prior versions.
[-] Vulnerability Description:
The vulnerable code is located in the /src/www/project/register.php script:
27….