7.5

CVE-2007-0260

Exploit
PHP remote file inclusion vulnerability in index.php in Naig 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the this_path parameter.  NOTE: a reliable third party disputes this vulnerability because this_path is defined before use
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
NaigNaig Version0.5.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.94% 0.774
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://osvdb.org/33472
http://securityreason.com/securityalert/2145
http://www.attrition.org/pipermail/vim/2007-January/001239.html
Exploit
http://www.securityfocus.com/archive/1/456744/100/0/threaded
http://www.securityfocus.com/archive/1/456785/100/0/threaded