8.8
CVSSv2

CVE-2008-4425

Published: 03/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 8.8 | Impact Score: 9.2 | Exploitability Score: 8.6
VMScore: 895
Vector: AV:N/AC:M/Au:N/C:N/I:C/A:C

Vulnerability Summary

Directory traversal vulnerability in upload.php in Phlatline's Personal Information Manager (pPIM) 1.0 allows remote malicious users to delete arbitrary files via directory traversal sequences in the file parameter within a delfile action.

Vulnerable Product Search on Vulmon Subscribe to Product

phlatline personal information manager 1.0

Exploits

- -= pPIM Multiple Vulnerabilities =- Version Tested: pPIM 10 Vendor notified Full details can also be found at wwwlampsecurityorg/node/18 Author: Justin C Klein Keane <justin@madirishnet> Description pPIM (wwwphlatlineorg/indexphp?page=prod-ppim) is a Personal Information Management application written in PHP that c ...
########################################################## #Author : BeyazKurt #Contact : Djm-sut@HotmailCom # #Script : Ppim v10 [Bu ne bicim script adidir amk :D ] #Download : scriptsringsworldcom/organizers/ppimzip # # D0rk : inurl:eventsphp?listallevents # # File Delete Vulnerability: uploadphp # # Example:creawebscommx/ ...
Ppim <= 10 (upload/change password) Multiple Vulnerabilities cript : Ppim v10 Download : scriptsringsworldcom/organizers/ppimzip By Stack Poc 1: change password for change password go to this link localhost/ppim/changepasswordphp writhe your password and confirm it Poc 2 : upload localhost/ppim/uploadphp you can uplo ...