PoC Index

CVE-2006-4858

MEDIUM 6.8EPSS 6.9%

PHP remote file inclusion vulnerability in install.serverstat.php in the Serverstat (com_serverstat) 0.4.4 and earlier component for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

CVSS v2.0
6.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
EPSS
6.89% chance of exploitation in the next 30 days, 94th percentile
Published
2006-09-19
Updated
2024-08-07

ExploitDB entries (1)

References

Related