7.8
CVSSv2

CVE-2008-5322

Published: 03/12/2008 Updated: 29/09/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 785
Vector: AV:N/AC:L/Au:N/C:C/I:N/A:N

Vulnerability Summary

Wysi Wiki Wyg 1.0 allows remote malicious users to obtain system information via an invalid categup parameter to index.php, which calls the phpinfo function.

Vulnerable Product Search on Vulmon Subscribe to Product

easy-script wysi wiki wyg 1.0

Exploits

/* Wysi Wiki Wyg 10 (LFI,XSS,PHPInfo) Remote Vulnerabilities ---------------------------------------------------------- By StAkeR[at]hotmail[dot]it wwweasy-scriptcom/scripts-dl/wysiwikiwyg10zip ---------------------------------------------------------- 1- PHPInfo Disclosure - indexphp?categup=isset 2- Loca ...