6.8

CVE-2007-4117

PHP remote file inclusion vulnerability in index.php in phpWebFileManager 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the PN_PathPrefix parameter.  NOTE: this issue is disputed by a reliable third party, who demonstrates that PN_PathPrefix is defined before use
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
PlatonPhpwebfilemanager Version0.5
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.35% 0.678
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://securityreason.com/securityalert/2940
http://www.attrition.org/pipermail/vim/2007-July/001744.html
http://www.securityfocus.com/archive/1/475095/100/0/threaded
https://exchange.xforce.ibmcloud.com/vulnerabilities/35690