7.5

CVE-2006-4645

Exploit

PHP remote file inclusion vulnerability in akarru.gui/main_content.php in Akarru Social BookMarking Engine 0.4.3.34 and earlier, and possibly 0.4.4.120, allows remote attackers to execute arbitrary PHP code via a URL in the bm_content parameter.

Data is provided by the National Vulnerability Database (NVD)
AkarruSocial Bookmarking Engine Version0.4.3.2
AkarruSocial Bookmarking Engine Version0.4.3.3
AkarruSocial Bookmarking Engine Version0.4.3.34
AkarruSocial Bookmarking Engine Version0.4.4.120
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 17.37% 0.948
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P