5.1
CVSSv2

CVE-2006-3987

Published: 05/08/2006 Updated: 17/10/2018
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in index.php in Knusperleicht FileManager 1.2 and previous versions allow remote malicious users to execute arbitrary PHP code via a URL in the (1) dwl_download_path or (2) dwl_include_path parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

knusperleicht knusperleicht filemanager

Exploits

#================================================================= #K_fileManager v12 <= (dwl_include_path) Remote File Inclusion Exploit #================================================================ # | #Critical Level : Dangerous | # ...