7.5
CVE-2006-3584
- EPSS 0.91%
- Veröffentlicht 08.08.2006 23:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
Dynamic variable evaluation vulnerability in index.php in Jetbox CMS 2.1 SR1 allows remote attackers to overwrite configuration variables via URL parameters, which are evaluated as PHP variable variables.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Jetbox ≫ Jetbox Cms Version2.1
Jetbox ≫ Jetbox Cms Version2.1_sr1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.91% | 0.751 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|