7.5
CVSSv2

CVE-2004-1888

Published: 31/12/2004 Updated: 19/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

display.cgi in Aborior Encore WebForum allows remote to execute arbitrary commands via shell metacharacters in the file variable.

Vulnerable Product Search on Vulmon Subscribe to Product

aborior encore web forum

Exploits

source: wwwsecurityfocuscom/bid/10040/info Encore Web Forum is reported prone to an issue that may allow a remote user to execute arbitrary commands on a system implementing the forum software This issue is due to the application's failure to properly validate user-supplied URI input A remote attacker may exploit this condition to exec ...