Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-5802

Опубликовано: 03 нояб. 2007
Источник: nvd
CVSS2: 7.5
EPSS Средний

Описание

Directory traversal vulnerability in index.php in Firewolf Technologies Synergiser 1.2 RC1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: this can be leveraged to obtain the path by including a local PHP script with a duplicate function declaration.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:firewolf_technologies:synergiser:*:*:*:*:*:*:*:*
Версия до 1.2_rc1 (включая)

EPSS

Процентиль: 96%
0.22672
Средний

7.5 High

CVSS2

Дефекты

CWE-22

Связанные уязвимости

github
почти 4 года назад

Directory traversal vulnerability in index.php in Firewolf Technologies Synergiser 1.2 RC1 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the page parameter. NOTE: this can be leveraged to obtain the path by including a local PHP script with a duplicate function declaration.

EPSS

Процентиль: 96%
0.22672
Средний

7.5 High

CVSS2

Дефекты

CWE-22