Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-2477

Опубликовано: 03 мая 2007
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

PHP remote file inclusion vulnerability in phpMyChat.php3 in phpMyChat 0.14.5 allows remote attackers to execute arbitrary PHP code via a URL in the {ChatPath} parameter. NOTE: this has been disputed by multiple third parties and CVE because $ChatPath is set to a constant value

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpmychat:phpmychat:0.14.5:*:*:*:*:*:*:*

EPSS

Процентиль: 78%
0.01174
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

** DISPUTED ** PHP remote file inclusion vulnerability in phpMyChat.php3 in phpMyChat 0.14.5 allows remote attackers to execute arbitrary PHP code via a URL in the {ChatPath} parameter. NOTE: this has been disputed by multiple third parties and CVE because $ChatPath is set to a constant value.

EPSS

Процентиль: 78%
0.01174
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other