7.5
CVSSv2

CVE-2007-4978

Published: 19/09/2007 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in phpSyncML 0.1.2 and previous versions allow remote malicious users to execute arbitrary PHP code via a URL in the base_dir parameter to (1) Decoder.php and (2) Encoder.php in WBXML/.

Vulnerable Product Search on Vulmon Subscribe to Product

phpsyncml phpsyncml

Exploits

======================================================================== || ## ## ## ########## ####### ######## || || ## ## ########## ########## ## ## ## || || #### ########## ## ## ####### ######## || || #### ## ## ## ## ## ####### ...