Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-2260

Опубликовано: 25 апр. 2007
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Multiple PHP remote file inclusion vulnerabilities in bibtex mase beta 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the bibtexrootrel parameter to (1) unavailable.php, (2) source.php, (3) log.php, (4) latex.php, (5) indexinfo.php, (6) index.php, (7) importinfo.php, (8) import.php, (9) examplefile.php, (10) clearinfo.php, (11) clear.php, (12) aboutinfo.php, (13) about.php, and other unspecified files.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:bibtex:mase:2.0_beta:*:*:*:*:*:*:*

EPSS

Процентиль: 85%
0.02462
Низкий

7.5 High

CVSS2

Дефекты

CWE-94

Связанные уязвимости

github
почти 4 года назад

Multiple PHP remote file inclusion vulnerabilities in bibtex mase beta 2.0 allow remote attackers to execute arbitrary PHP code via a URL in the bibtexrootrel parameter to (1) unavailable.php, (2) source.php, (3) log.php, (4) latex.php, (5) indexinfo.php, (6) index.php, (7) importinfo.php, (8) import.php, (9) examplefile.php, (10) clearinfo.php, (11) clear.php, (12) aboutinfo.php, (13) about.php, and other unspecified files.

EPSS

Процентиль: 85%
0.02462
Низкий

7.5 High

CVSS2

Дефекты

CWE-94