6.5
CVSSv2

CVE-2006-6453

Published: 10/12/2006 Updated: 19/10/2017
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
VMScore: 655
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in JOWAMP_ShowPage.php in J-OWAMP Web Interface 2.1 allows remote authenticated users to execute arbitrary PHP code via a URL in the link parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

j-owamp web interface 2.1

Exploits

#!/usr/bin/perl # Jowamp WebInterface v 21 Remote File Inclusion Vulnerablity # Vulnerability found & Exploit [c]oded By Dr Max Virus # Download:wwwavitpt/jowamp/index_files/JOWAMP_WebInterface_version_2_1zip # User Must Be Logged In! # In a web browser open the page localhost/jowamp/login/registerphp to register new users ...