5.1
CVE-2006-2931
- EPSS 1.2%
- Veröffentlicht 21.06.2006 19:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
CMS Mundo before 1.0 build 008 does not properly verify uploaded image files, which allows remote attackers to execute arbitrary PHP code by uploading and later directly accessing certain files.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hotwebscripts ≫ Cms Mundo Version1.0
Hotwebscripts ≫ Cms Mundo Version1.0_build_007
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.2% | 0.78 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5.1 | 4.9 | 6.4 |
AV:N/AC:H/Au:N/C:P/I:P/A:P
|