7.5

CVE-2006-3689

Exploit
PHP remote file inclusion vulnerability in user-func.php in Codeworks Gnomedia SubberZ[Lite] allows remote attackers to execute arbitrary PHP code via a URL in the myadmindir parameter.  NOTE: this issue has been disputed by a third party that claims that " the myadmindir variable is set before any GET variables are processed.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CodeworksGnomedia Subberz Versionlite
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.56% 0.878
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://securityreason.com/securityalert/1246
http://www.osvdb.org/28592
http://www.securityfocus.com/archive/1/440139/100/0/threaded
http://www.securityfocus.com/archive/1/440864/100/100/threaded
http://www.securityfocus.com/bid/18990
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/27748