7.5
CVSSv2

CVE-2008-4134

Published: 19/09/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in manager/static/view.php in phpRealty 0.03 and previous versions, and possibly other versions prior to 0.05, allows remote malicious users to execute arbitrary PHP code via a URL in the INC parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

phprealty phprealty 0.023

phprealty phprealty 0.022

phprealty phprealty

phprealty phprealty 0.021

Exploits

-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- phpRealty <= 003 (INC) Remote File Inclusion Vulnerability -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=- $ Script: phpRealty $ Version: <= 003 $ File affected: manager/static/viewphp $ Download: sourceforgenet/project/showfilesphp?group_id=204745 Found by ...