7.8
CVSSv2

CVE-2007-2539

Published: 09/05/2007 Updated: 16/10/2018
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

The show_files function in RunCms 1.5.2 and previous versions allows remote malicious users to obtain sensitive information (file existence and file metadata) via unspecified vectors.

Vulnerable Product Search on Vulmon Subscribe to Product

runcms runcms

Exploits

<?php print_r(' -------------------------------------------------------------------------- RunCms <= 152 /class/debug/debug_showphp sql injection / credentials disclosure exploit by rgod mail: retrog at alice dot it site: retrogodaltervistaorg dork: "Runcms Copyright" "2002 - 2007" +"page created" -------------------------------- ...