7.5
CVSSv2

CVE-2006-5148

Published: 05/10/2006 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in Forum82 2.5.2b and previous versions allow remote malicious users to execute arbitrary PHP code via a URL in the repertorylevel parameter including scripts in /forum/ including (1) search.php, (2) message.php, (3) member.php, (4) mail.php, (5) lostpassword.php, (6) gesfil.php, (7) forum82lib.php3, and other unspecified scripts.

Vulnerable Product Search on Vulmon Subscribe to Product

forum82 forum82

Exploits

#============================================================================================== #Forum82 <= v252b (repertorylevel) Multiple RFI Vulnerabilities #=============================================================================================== # #Critical Le ...