9
CVSSv2

CVE-2008-4305

Published: 23/12/2008 Updated: 08/08/2017
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Static code injection vulnerability in installation/setup.php in phpCollab 2.5 rc3 and previous versions allows remote authenticated administrators to inject arbitrary PHP code into include/settings.php via the URI.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

php-collab php-collab

php-collab php-collab 2.4

php-collab php-collab 2.2

php-collab php-collab 2.3