7.5
CVSSv2

CVE-2005-0513

Published: 19/02/2005 Updated: 18/10/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in mail_autocheck.php in the Email This Entry add-on for pMachine Pro 2.4, and possibly other versions including pMachine Free, allows remote malicious users to execute arbitrary PHP code by directly requesting mail_autocheck.php and modifying the pm_path parameter to reference a URL on a remote web server that contains the code, a different vulnerability than CVE-2003-1086.

Vulnerable Product Search on Vulmon Subscribe to Product

pmachine pmachine pro 2.4

Exploits

source: wwwsecurityfocuscom/bid/12597/info PMachine Pro is reported prone to a remote file include vulnerability This issue affects the 'mail_autocheckphp' script An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process This will facilitate ...