5.8
CVSSv2

CVE-2008-0393

Published: 23/01/2008 Updated: 29/09/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 585
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Directory traversal vulnerability in info.php in GradMan 0.1.3 and previous versions allows remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the tabla parameter, a different vector than CVE-2008-0361.

Vulnerable Product Search on Vulmon Subscribe to Product

gradman gradman

Exploits

Software: Gradman <= 013 HomePage: gradmanxe1idocommx/ Software: Gradman <= 013 Exploit: Local File Inclusion [High] Dork: "powered by Gradman" Bug Found By: Syndr0me! site: wwwremoteexecutiones Where: infophp?tabla= Greetz: S4nt0!, Yubix, Xarnuz, Chame, Electr0cbax, komtec1, f34r [+] Exploit: infophp?tabla=//// ...