Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-2128


Vulnerability Score 7.5 7.5
CVE Id CVE-2008-2128
Last Modified 05 Sep 2008 05:39:38
Published 09 May 2008 02:20:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE



PHP remote file inclusion vulnerability in templates/header.php in CMS Faethon 2.2 Ultimate allows remote attackers to execute arbitrary PHP code via a URL in the mainpath parameter, a different vulnerability than CVE-2006-5588 and CVE-2006-3185.

Vulnerable Systems


  • Cms Faethon 2.2


MILW0RM - 5558

XF - cmsfaethon-header-file-include(42376)

Last Updated: 27 May 2016 10:47:46