7.5
CVSSv2

CVE-2007-5311

Published: 09/10/2007 Updated: 15/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in backend/admin-functions.php in TorrentTrader Classic Edition 1.07 allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the ss_uri parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

torrenttrader torrenttrader 1.07

Exploits

TorrentTrader Classic Mutiple Remote vulnerabilities Discovered By : HACKERS PAL Copy rights : HACKERS PAL Website : wwwsoqornet Email Address : security@soqornet Tested on TorrentTrader Classic v107 local file inclusion backend/admin-functionsphp?ss_uri=dd Xss pjirc/cssphp?color=<script>alert(documentcookie);</script> br ...