7.5
CVSSv2

CVE-2006-6212

Published: 01/12/2006 Updated: 08/03/2011
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in centre.php in Site News (site_news) 2.00, and possibly earlier, allows remote malicious users to execute arbitrary PHP code via a URL in the page parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

webwiz site news 2.00

Exploits

#===================================================================================# # # Site News => (centrephp) $page Remote File Inclusion Exploit # #===================================================================================# # # Softname : Site News # Url : dvmetfreefr/script/site_newszip # Exploit type : Remote File Inc ...