6.8
CVSSv2

CVE-2008-6665

Published: 08/04/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

change.php in Ananta CMS 1.0b5, with magic_quotes_gpc disabled, allows remote malicious users to gain administrator privileges via a crafted email parameter, possibly related to code injection.

Vulnerable Product Search on Vulmon Subscribe to Product

anantasoft ananta cms 1.0b5

Exploits

=============================================== Anata CMS 10b5 Arbitrary Add-Admin Exploit =============================================== ,--^----------,--------,-----,-------^--, | ||||||||| `--------' | O CWH Underground Hacking Team `+---------------------------^----------| `\_,-------, ______________________ ...