Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2007-5234

Overview

Vulnerability Score 7.5 7.5
CVE Id CVE-2007-5234
Last Modified 30 Aug 2010 12:00:00
Published 05 Oct 2007 07:17:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2007-5234

Summary

PHP remote file inclusion vulnerability in upload/common/footer.php in Ossigeno CMS 2.2 alpha3 allows remote attackers to execute arbitrary PHP code via a URL in the level parameter.

Vulnerable Systems

Application

  • Ossigeno 2.2 Alpha3


References

XF - ossigeno-footer-file-include(36949)

BID - 25924

MILW0RM - 4483

MISC - http://nicenamecrew.com/exploits/Ossigeno-script.txt


Last Updated: 27 May 2016 10:46:06