6.8
CVSSv2

CVE-2008-7163

Published: 04/09/2009 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Directory traversal vulnerability in mods/Integrated/index.php in SineCMS 2.3.5 and previous versions, when register_globals is enabled, allows remote malicious users to include and execute arbitrary local files via the sine[config][index_main] parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

sinecms sinecms 2.1.1

sinecms sinecms 2.1

sinecms sinecms 2.2

sinecms sinecms 2.2.1

sinecms sinecms 2.0

sinecms sinecms

sinecms sinecms 2.3.2

sinecms sinecms 2.3.4

Exploits

[*]~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~[*] | ____ __________ __ ____ __ | | /_ | ____ |__\_____ \ _____/ |_ /_ |/ |_ | | | |/ \ | | _(__ <_/ ___\ __\ ______ | \ __\ | | | | | \ | |/ \ \___| | /_____/ | ...