Lucene search

K
cve[email protected]CVE-2007-1416
HistoryMar 12, 2007 - 11:19 p.m.

CVE-2007-1416

2007-03-1223:19:00
web.nvd.nist.gov
21
cve-2007-1416
php
remote file inclusion
urlshrink
security vulnerability

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

High

0.168 Low

EPSS

Percentile

96.1%

PHP remote file inclusion vulnerability in createurl.php in JCcorp (aka James Coyle) URLshrink allows remote attackers to execute arbitrary PHP code via a URL in the formurl parameter.

Affected configurations

NVD
Node
jccorpurlshrinkMatch1.3.1

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

7.5 High

AI Score

Confidence

High

0.168 Low

EPSS

Percentile

96.1%

Related for CVE-2007-1416