9.3
CVSSv2

CVE-2007-4009

Published: 26/07/2007 Updated: 14/02/2024
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

PHP remote file inclusion vulnerability in admin/business_inc/saveserver.php in SWSoft Confixx Pro 2.0.12 up to and including 3.3.1 allows remote malicious users to execute arbitrary PHP code via a URL in the thisdir parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

parallels confixx 3.3.1

parallels confixx 2.0.12

Exploits

[*] Confixx <= PRO 331 Remote File Inclusion Vulnerability __________________________________________________________________________ [!] Application homepage : wwwswsoftcom/de/products/confixx/ [!] Author : H4 / XPK [!] Contact : xpkzxccom/ [!] Bug discovered : 2007-07-21 [!] Bug publ ...