PoC Index

CVE-2008-5171

HIGH 9.3EPSS 3.3%

Multiple directory traversal vulnerabilities in admin/minibb/index.php in phpBLASTER CMS 1.0 RC1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the (1) DB, (2) lang, and (3) skin parameters.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
3.25% chance of exploitation in the next 30 days, 87th percentile
Published
2008-11-19
Updated
2024-08-07

ExploitDB entries (1)

References

Related