5.1
CVSSv2

CVE-2008-5728

Published: 26/12/2008 Updated: 29/09/2017
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
VMScore: 515
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple directory traversal vulnerabilities in AIST NetCat 3.12 and previous versions, when magic_quotes_gpc is disabled and register_globals is enabled, allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in (1) the system parameter in modules/netshop/post.php; and the INCLUDE_FOLDER parameter in (2) auth.inc.php, (3) banner.inc.php, (4) blog.inc.php, and (5) forum.inc.php in modules/.

Vulnerable Product Search on Vulmon Subscribe to Product

netcat netcat 2.3

netcat netcat 2.2

netcat netcat

netcat netcat 1.1

netcat netcat 3.0

netcat netcat 2.4

netcat netcat 2.1

netcat netcat 2.0

Exploits

NetCat <= 312 Multiple Remote Vulnerabilities The description: The set vulnerability in CMS NetCat versions 312 and more low was revealed 1 Multiple File Including Vulnerabilities Vulnerability exists for the reason that direct access to some files, around logicians of work of the appendix is possible It gives the chance to redefine inte ...