Lucene search

K
cveMitreCVE-2007-0986
HistoryFeb 16, 2007 - 11:28 a.m.

CVE-2007-0986

2007-02-1611:28:00
CWE-94
mitre
web.nvd.nist.gov
31
cve-2007-0986
php
remote file inclusion
index.php
jupiter cms
vulnerability
security
nvd

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.126

Percentile

95.5%

PHP remote file inclusion vulnerability in index.php in Jupiter CMS 1.1.5, when PHP 5.0.0 or later is used, allows remote attackers to execute arbitrary PHP code via an ftp URL in the n parameter.

Affected configurations

Nvd
Node
jupiter_cmsjupiter_cmsMatch1.1.5
VendorProductVersionCPE
jupiter_cmsjupiter_cms1.1.5cpe:2.3:a:jupiter_cms:jupiter_cms:1.1.5:*:*:*:*:*:*:*

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

High

EPSS

0.126

Percentile

95.5%