7.5
CVSSv2

CVE-2004-1601

Published: 16/10/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in index.php in CoolPHP 1.0-stable allows remote malicious users to access arbitrary files and execute local PHP scripts via a .. (dot dot) in the op parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

coolphp coolphp web portal 1.0_stable

Exploits

source: wwwsecurityfocuscom/bid/11437/info Reportedly CoolPHP is affected by multiple remote input validation vulnerabilities These issues are due to a failure of the application to properly sanitize user supplied input prior to using it to make critical actions An attacker can leverage these issues to steal cookie-based authentication ...