10
CVSSv2

CVE-2008-4557

Published: 14/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

plugins/wacko/highlight/html.php in Strawberry in CuteNews.ru 1.1.1 (aka Strawberry) allows remote malicious users to execute arbitrary PHP code via the text parameter, which is inserted into an executable regular expression.

Vulnerable Product Search on Vulmon Subscribe to Product

cutephp cutenews 1.1.1

Exploits

----[ CuteNews Remote Code Execution ITDefenceru Antichatru ] Strawberry (CuteNews) Remote Code Execution Eugene Minaev underwater@itdefenceru ___________________________________________________________________ ____/ __ __ _______________________ _______ _______________ \ \ \ / \ / /_// // / ...