7.5
CVSSv2

CVE-2009-3056

Published: 03/09/2009 Updated: 19/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in include/engine/content/elements/menu.php in KingCMS 0.6.0 allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[AdminPath] parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

bas bloemsaat kingcms 0.6.0

Exploits

------------------------------------------------------------------------------------- Kingcms v060 [menuphp] Remote File Inclusion Vulnerability ------------------------------------------------------------------------------------- Author: CoBRa_21 Mail: uyku_cu[at]windowslive[dot]com Script Download: sourceforgenet/projects/kingcms ...