5
CVSSv2

CVE-2008-1506

Published: 25/03/2008 Updated: 29/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

PEEL, possibly 3.x and previous versions, allows remote malicious users to obtain configuration information via a direct request to phpinfo.php, which calls the phpinfo function.

Vulnerable Product Search on Vulmon Subscribe to Product

peel peel 1.0b

peel peel 2.6

peel peel 2.7

peel peel

Exploits

#!/usr/bin/php <?php /*---------------------------------------------------------------*\ * * Exploit: PEEL CMS Admin Hash Extraction and Remote Upload * Credits: Charles "real" F <charlesfol[at]hotmailfr> * URL: realnfreefr/ * Date: 03-18-08 * * Targets: PEEL PREMIUM PEEL POWERSELL * PEEL INTEGRALE PEEL PROFESSIO ...