6.8
CVSSv2

CVE-2007-2611

Published: 11/05/2007 Updated: 11/10/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in CGX 20050314 allow remote malicious users to execute arbitrary PHP code via a URL in the pathCGX parameter to (1) mtdialogo.php, (2) ltdialogo.php, (3) login.php, and (4) logingecon.php in inc/; and multiple unspecified files in frm/, sql/, and cns/.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cgx cgx 20050314

Exploits

# CGX 2005-03-14 (pathCGX) Remote File Include Vulnerablites # DScript: codigolivreorgbr/frs/?group_id=413&release_id=1978 # Discovered by: GolD_M = [Mahmood_ali] # Homepage: wwwTryagcc # Exploit:[Path]/inc/mtdialogophp?pathCGX=Shell # Exploit:[Path]/inc/ltdialogophp?pathCGX=Shell # Exploit:[Path]/inc/loginphp?pathCGX=Shel ...