Lucene search

K
cveMitreCVE-2003-1500
HistoryOct 25, 2007 - 7:00 p.m.

CVE-2003-1500

2007-10-2519:00:00
CWE-94
mitre
web.nvd.nist.gov
29
cve-2003-1500
php
remote file inclusion
cpcommerce
code execution

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

9.8

Confidence

High

EPSS

0.081

Percentile

94.4%

PHP remote file inclusion vulnerability in _functions.php in cpCommerce 0.5f allows remote attackers to execute arbitrary code via the prefix parameter.

Affected configurations

Nvd
Node
cpcommercecpcommerceMatch0.5f
VendorProductVersionCPE
cpcommercecpcommerce0.5fcpe:2.3:a:cpcommerce:cpcommerce:0.5f:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

9.8

Confidence

High

EPSS

0.081

Percentile

94.4%

Related for CVE-2003-1500