6
CVSSv2

CVE-2008-6726

Published: 17/04/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6 | Impact Score: 6.4 | Exploitability Score: 6.8
VMScore: 605
Vector: AV:N/AC:M/Au:S/C:P/I:P/A:P

Vulnerability Summary

Multiple directory traversal vulnerabilities in CMScout 2.06, when register_globals is enabled, allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the bit parameter to (1) admin.php and (2) index.php, different vectors than CVE-2008-3415.

Vulnerable Product Search on Vulmon Subscribe to Product

cmscout cmscout 2.06

Exploits

############################################################################################# [+] CMScout 206 Remote SQL Injection/Local File Inclusion [+] Discovered By SirGod [+] Visit : wwwmortal-teamorg [+] Visit : wwwh4cky0uorg [+] Greetz : All my friends #################################################################################### ...