7.6
CVSSv2

CVE-2009-2110

Published: 18/06/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

Multiple directory traversal vulnerabilities in DB Top Sites 1.0, when magic_quotes_gpc is disabled, allow remote malicious users to include and execute arbitrary local files via a .. (dot dot) in the u parameter to (1) full.php, (2) index.php, and (3) contact.php.

Vulnerable Product Search on Vulmon Subscribe to Product

jnmsolutions db top sites 1.0

Exploits

###################################################################### [+] DB Top Sites v10 (indexphp u) Local File Inclusion Vulnerability [+] Discovered By SirGod [+] wwwmortal-teamorg ####################################################################### [+] Local File Inclusion - Vulnerable code is everywhere ------------------------- ...