Lucene search

K
cveMitreCVE-2007-0499
HistoryJan 25, 2007 - 9:28 p.m.

CVE-2007-0499

2007-01-2521:28:00
CWE-94
mitre
web.nvd.nist.gov
29
php
remote file inclusion
vulnerability
sangwan kim
phpindexpage 1.0.1

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.045

Percentile

92.5%

PHP remote file inclusion vulnerability in config.php in Sangwan Kim phpIndexPage 1.0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the env[inc_path] parameter.

Affected configurations

Nvd
Node
sangwan_kimphpindexpageRange1.0.1
VendorProductVersionCPE
sangwan_kimphpindexpage*cpe:2.3:a:sangwan_kim:phpindexpage:*:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.045

Percentile

92.5%