6.8
CVSSv2

CVE-2007-3230

Published: 14/06/2007 Updated: 11/10/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in phphtml.php in Idan Sofer PHP::HTML 0.6.4 allows remote malicious users to execute arbitrary PHP code via a URL in the htmlclass_path parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

simian systems inc sitellite 0.6.4

Exploits

phphtml v 064 FOUND BY : o0xxdark0o Website: wwwsitelliteorg/ DOWNLOAD : sourceforgenet/projects/phphtml REMOTE FILE INCLUDE ############################################################ FILE : PATH\phphtmlphp ############################################################ EXP: xxxcom\path\phphtmlphp?htmlclass_path=SH3lltxt? #### ...