5
CVSSv2

CVE-2006-7047

Published: 24/02/2007 Updated: 16/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

include.php in Shoutpro 1.0 might allow remote malicious users to bypass IP ban restrictions via a URL in the path parameter that points to an alternate bannedips.php file. NOTE: this issue was originally reported as remote file inclusion, but CVE analysis suggests that this cannot be used for code execution.

Vulnerable Product Search on Vulmon Subscribe to Product

shoutpro shoutpro 1.0