7.5
CVSSv2

CVE-2006-6137

Published: 28/11/2006 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in Sisfo Kampus 0.8 allow remote malicious users to execute arbitrary PHP code via a URL in the (1) exec parameter to index.php or (2) print parameter to print.php, which is also accessible via the print command to index.php.

Vulnerable Product Search on Vulmon Subscribe to Product

sisfo kampus sisfo kampus 0.8

Exploits

# Source Code = Sisfokampus 08 # # Website = wwwSisfokampusnet # # Author = E Setio Dewo (setio_dewo@telkomnet) # # Dorkz : Allinurl: /indexphp?exec= # File Vuln : indexphp # printphp # downloadphp ( Local File Include ) # # Found by : Wawan Firmansy ...