CVE-2008-4735
HIGH 8.5EPSS 2.3%
PHP remote file inclusion vulnerability in header.php in Concord Asset, Software, and Ticket system (CoAST) 0.95 allows remote attackers to execute arbitrary PHP code via a URL in the sections_file parameter.
- CVSS v2.0
- 8.5 HIGH
AV:N/AC:M/Au:S/C:C/I:C/A:C - EPSS
- 2.33% chance of exploitation in the next 30 days, 82th percentile
- Published
- 2008-10-24
- Updated
- 2024-08-07