5
CVSSv2

CVE-2006-0125

Published: 09/01/2006 Updated: 08/03/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Unspecified vulnerability in appserv/main.php in AppServ 2.4.5 allows remote malicious users to include arbitrary files via the appserv_root parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. There is not enough detail from these third party sources to know whether this is directory traversal, remote file include, or another issue.

Vulnerable Product Search on Vulmon Subscribe to Product

appserv open project appserv 2.4.5

Exploits

source: wwwsecurityfocuscom/bid/16166/info AppServ Open Project is prone to a remote file include vulnerability This issue is due to a failure in the application to properly sanitize user-supplied input An attacker can exploit this issue to execute arbitrary remote PHP code on an affected computer with the privileges of the Web server ...