7.8
CVSSv2

CVE-2007-3346

Published: 22/06/2007 Updated: 29/07/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in index.php in PHPAccounts 0.5 allows remote malicious users to include arbitrary local files via unspecified manipulations of the page parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

php accounts php accounts 0.5

Exploits

source: wwwsecurityfocuscom/bid/24572/info PHP Accounts is prone to a local file-include vulnerability because it fails to properly sanitize user-supplied input Exploiting this issue may allow an unauthorized user to view files and execute local scripts PHP Accounts 05 is vulnerable; other versions may also be affected www ...