7.5
CVSSv2

CVE-2007-6515

Published: 21/12/2007 Updated: 15/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 760
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

support/dispatch.cgi in SiteScape Forum allows remote malicious users to execute arbitrary TCL code via code separator characters in the query string.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sitescape sitescape forum st

sitescape sitescape forum zx

Exploits

#!/usr/bin/env python """ -*- coding: utf-8 -*- sitescape_sploitpy Copyright 2010 Spencer McIntyre <zeroSteiner@gmailcom> This program is free software; you can redistribute it and/or modify it under the terms of the GNU General Public License as published by the Free Software Foundation; ...
source: wwwsecurityfocuscom/bid/26963/info SiteScape Forum is prone to a command-injection vulnerability because it fails to adequately sanitize user-supplied input Attackers can exploit this issue to execute arbitrary commands in the context of the webserver process Successful exploits could compromise the application and possibly the ...