Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-1860

Static code injection vulnerability in admin.php in LokiCMS 0.3.3 and earlier allows remote attackers to inject arbitrary PHP code into includes/Config.php via the default parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.046
EPSS Ranking 88.9%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2008-1860
  • Lokicms » Lokicms » Version: Any
    cpe:2.3:a:lokicms:lokicms:*
  • Lokicms » Lokicms » Version: 0.1.0
    cpe:2.3:a:lokicms:lokicms:0.1.0
  • Lokicms » Lokicms » Version: 0.1.0rc1
    cpe:2.3:a:lokicms:lokicms:0.1.0rc1
  • Lokicms » Lokicms » Version: 0.2.0
    cpe:2.3:a:lokicms:lokicms:0.2.0
  • Lokicms » Lokicms » Version: 0.3.0
    cpe:2.3:a:lokicms:lokicms:0.3.0
  • Lokicms » Lokicms » Version: 0.3.1b1
    cpe:2.3:a:lokicms:lokicms:0.3.1b1
  • Lokicms » Lokicms » Version: 0.3.1b2
    cpe:2.3:a:lokicms:lokicms:0.3.1b2
  • Lokicms » Lokicms » Version: 0.3.2b1
    cpe:2.3:a:lokicms:lokicms:0.3.2b1


Contact Us

Shodan ® - All rights reserved