6.8
CVSSv2

CVE-2007-5840

Published: 06/11/2007 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in starnet/themes/c-sky/main.inc.php in Fred Stuurman SyndeoCMS 2.5.01 allows remote malicious users to execute arbitrary PHP code via a URL in the cmsdir parameter, a different vector than CVE-2006-4920.2.

Vulnerable Product Search on Vulmon Subscribe to Product

syndeocms syndeocms 2.5.1

Exploits

-------------------------------------------- = = = Mdx (c) 2007 = = wwwby-mdxcom = -------------------------------------------- = = =syndeoCMS 2501 [cmsdir] Remote File Include = ...