7.5
CVSSv2

CVE-2008-2883

Published: 26/06/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in include/plugins/jrBrowser/payment.php in Jamroom 3.3.0 up to and including 3.3.5 allows remote malicious users to execute arbitrary PHP code via a URL in the jamroom[jm_dir] parameter. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

jamroom jamroom 3.3.5

jamroom jamroom 3.3.1

jamroom jamroom 3.3.2

jamroom jamroom 3.3.0

jamroom jamroom 3.3.3

jamroom jamroom 3.3.4

Exploits

+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Scripts : CMS Jamroom Version: 335 Discovered By : Cyberlog Scripts site : wwwjamroomnet/ Download Script : wwwjamroomnet/indexphp?m=td_download&o=download&file_id=43 Thanks To : #sekuritionline, #semprol, #bajin ...