Vulnerability Details CVE-2006-4011
PHP remote file inclusion vulnerability in esupport/admin/autoclose.php in Kayako eSupport 2.3.1 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the subd parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.028
EPSS Ranking 85.4%
CVSS Severity
CVSS v2 Score 2.6
Products affected by CVE-2006-4011
-
cpe:2.3:a:kayako:esupport:2.3
-
cpe:2.3:a:kayako:esupport:2.3.1