5.1
CVSSv2

CVE-2006-5730

Published: 06/11/2006 Updated: 19/10/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in manager/media/browser/mcpuk/connectors/php/Commands/Thumbnail.php in Modx CMS 0.9.2.1 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the base_path parameter. NOTE: it is possible that this is a vulnerability in FCKeditor.

Vulnerable Product Search on Vulmon Subscribe to Product

modxcms modxcms 0.9.1

modxcms modxcms

Exploits

+------------------------------------------------------------------------------------------- + MODx CMS 0921 (base_path) Remote File Include Vulnerability +------------------------------------------------------------------------------------------- + Affected Software : MODx CMS 0921 + Vendor : modxcmscom/ + Download ...