7.5

CVE-2006-4645

Exploit
PHP remote file inclusion vulnerability in akarru.gui/main_content.php in Akarru Social BookMarking Engine 0.4.3.34 and earlier, and possibly 0.4.4.120, allows remote attackers to execute arbitrary PHP code via a URL in the bm_content parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
AkarruSocial Bookmarking Engine Version0.4.3.2
AkarruSocial Bookmarking Engine Version0.4.3.3
AkarruSocial Bookmarking Engine Version0.4.3.34
AkarruSocial Bookmarking Engine Version0.4.4.120
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.28% 0.868
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://secunia.com/advisories/21784
Vendor Advisory
http://securityreason.com/securityalert/1543
http://www.securityfocus.com/archive/1/445605/100/0/threaded
http://www.securityfocus.com/bid/19870
Exploit
http://www.vupen.com/english/advisories/2006/3491
https://exchange.xforce.ibmcloud.com/vulnerabilities/28760
https://www.exploit-db.com/exploits/2315