6.8
CVSSv2

CVE-2008-6172

Published: 19/02/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in captcha/captcha_image.php in the RWCards (com_rwcards) 3.0.11 component for Joomla!, when magic_quotes_gpc is disabled, allows remote malicious users to include and execute arbitrary local files via directory traversal sequences in the img parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

weberr rwcards 3.0.11

Exploits

[o]------------------------------------------------------------------------------------[x] | Local File Inclusion Vulnerability | [o]------------------------------------------------------------------------------------[o] | Software : RWCards 3011 Component for Joomla 15 CMS ...