Lucene search

K
cveMitreCVE-2008-1068
HistoryFeb 28, 2008 - 9:44 p.m.

CVE-2008-1068

2008-02-2821:44:00
CWE-94
mitre
web.nvd.nist.gov
22
cve-2008-1068
php
remote file inclusion
portail web php 2.5.1.1
security vulnerability
nvd

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.018

Percentile

88.5%

Multiple PHP remote file inclusion vulnerabilities in Portail Web Php 2.5.1.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the site_path parameter to (1) Vert/index.php, (2) Noir/index.php, and (3) Bleu/index.php in template/, different vectors than CVE-2008-0645.

Affected configurations

Nvd
Node
portail_web_phpportail_web_phpRange2.5.1.1
VendorProductVersionCPE
portail_web_phpportail_web_php*cpe:2.3:a:portail_web_php:portail_web_php:*:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

Low

EPSS

0.018

Percentile

88.5%