7.5
CVSSv2

CVE-2006-4209

Published: 17/08/2006 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in install3.php in WEBInsta Mailing List Manager 1.3e allows remote malicious users to execute arbitrary PHP code via a URL in the cabsolute_path parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

webinsta mailing list manager 1.3e

Exploits

+-------------------------------------------------------------------- + + WEBInsta Mailing list manager 13e (cabsolute_path) RFI + + Original advisory: + wwwbb-pcsecurityde/Websecurity/311/org/ + WEBInsta_Mailing_list_manager_(cabsolute_path)_13e_RFIhtm + +-------------------------------------------------------------------- + + Affected ...