7.8
CVSSv2

CVE-2007-6221

Published: 04/12/2007 Updated: 29/07/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

TuMusika Evolution 1.7R5 allows remote malicious users to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

tumusika evolution tumusika evolution 1.7r5

Exploits

TuMusika Evolution 17R5 Remote File Disclosure Vulnerability Script : sourceforgenet/project/platformdownloadphp?group_id=186000 #################/frames/nogui/sc_downloadphp################# <? $file = $_GET['uri'] ;<---[xxx] $title = $_GET['title'] ; header('HTTP/11 200 OK'); header("content-type:audio/mp3"); header('Content-Dis ...