7.5
CVSSv2

CVE-2009-3705

Published: 16/10/2009 Updated: 07/04/2021
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in debugger.php in Achievo prior to 1.4.0 allows remote malicious users to execute arbitrary PHP code via a URL in the config_atkroot parameter.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

achievo achievo 0.8.1

achievo achievo 0.7.0

achievo achievo 0.7.3

achievo achievo 0.7.2

achievo achievo 0.9.1

achievo achievo 1.2.0

achievo achievo 1.2.1

achievo achievo 1.0.4

achievo achievo 1.0.3

achievo achievo 1.0.2

achievo achievo 1.0.1

achievo achievo 1.3.2

achievo achievo 1.3.3

achievo achievo 1.1.0

achievo achievo 1.0.0

achievo achievo 0.8.0

achievo achievo 0.9.0

achievo achievo 1.3.0

achievo achievo 0.7.1

achievo achievo 1.3.1

achievo achievo

Exploits

############################################################# Achievo 134(debuggerphp) Remote File Include Vulnerability ############################################################# Author : M3NW5 Homepage : wwwindonesiancodercom contach : m3nw5@hackermailcom Location : INDONESIA ##################################################### ...