7.5
CVE-2006-7063
- EPSS 2.29%
- Veröffentlicht 24.02.2007 01:28:00
- Zuletzt bearbeitet 16.06.2026 22:34:18
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in profile.php in TinyPHPforum 3.6 and earlier allows remote attackers to include and execute arbitrary files via ".." sequences in the uname parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Tinyphpforum ≫ Tinyphpforum Version <= 3.6
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.29% | 0.809 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://www.securityfocus.com/bid/18304
https://exchange.xforce.ibmcloud.com/vulnerabilities/26881
https://www.exploit-db.com/exploits/1857