7.5

CVE-2006-4287

Exploit
Multiple PHP remote file inclusion vulnerabilities in NES Game and NES System c108122 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) phphtmllib parameter to (a) phphtmllib/includes.php; tag_utils/ scripts including (b) divtag_utils.php, (c) form_utils.php, (d) html_utils.php, and (e) localinc.php; and widgets/ scripts including (f) FooterNav.php, (g) HTMLPageClass.php, (h) InfoTable.php, (i) localinc.php, (j) NavTable.php, and (k) TextNav.php.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Nes GameNes Game Versionc108122
Nes SystemNes System Versionc108122
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 9.98% 0.95
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/21593
Vendor Advisory
Exploit
http://www.osvdb.org/28044
http://www.osvdb.org/28045
http://www.osvdb.org/28046
http://www.osvdb.org/28047
http://www.osvdb.org/28048
http://www.osvdb.org/28049
http://www.osvdb.org/28050
http://www.osvdb.org/28051
http://www.osvdb.org/28052
http://www.osvdb.org/28053
http://www.osvdb.org/28054
http://www.rahim.webd.pl/exploity/Exploits/61.html
Exploit
http://www.securityfocus.com/bid/19611
Exploit
http://www.vupen.com/english/advisories/2006/3339
https://exchange.xforce.ibmcloud.com/vulnerabilities/28486
https://www.exploit-db.com/exploits/2226