7.5
CVE-2006-1959
- EPSS 16.89%
- Veröffentlicht 21.04.2006 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
PHP remote file inclusion vulnerability in direct.php in ActualScripts ActualAnalyzer Lite 2.72 and earlier, Gold 7.63 and earlier, and Server 8.23 and earlier allows remote attackers to execute arbitrary code via a URL in the rf parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Actualscripts ≫ Actualanalyzer Editionserver Version <= 8.23
Actualscripts ≫ Actualanalyzer Version2.72 Editionlite
Actualscripts ≫ Actualanalyzer Version7.63 Updategold
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 16.89% | 0.947 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|