7.5
CVSSv2

CVE-2007-2826

Published: 22/05/2007 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in lib/addressbook.php in Madirish Webmail 2.0 allows remote malicious users to execute arbitrary PHP code via a URL in the GLOBALS[basedir] parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

madirish webmail madirish webmail 2.0

Exploits

########################################################### Madirish Webmail v20 Remote File Include Vulnerabilities Author : BoZKuRTSeRDaR Contact MSN:BoZKuRTSeRDaR@BoZKuRTSeRDaRCoM My Homepage :WwWTurkmilliyetcileriOrG script Download : sourceforgenet/projects/madirishwebmail #################################################### ...
===================================================== Madirish Webmail 201 (basedir) RFI/LFI Vulnerability ===================================================== 1-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=0 0 _ __ __ __ 1 1 /' \ __ /'__`\ /\ ...