Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2008-6074

Directory traversal vulnerability in frame.php in phpcrs 2.06 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the importFunction parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 81.9%
CVSS Severity
CVSS v2 Score 5.1
Products affected by CVE-2008-6074
  • Phpcrs » Phpcrs » Version: Any
    cpe:2.3:a:phpcrs:phpcrs:*
  • Phpcrs » Phpcrs » Version: 1.01
    cpe:2.3:a:phpcrs:phpcrs:1.01
  • Phpcrs » Phpcrs » Version: 2.00
    cpe:2.3:a:phpcrs:phpcrs:2.00
  • Phpcrs » Phpcrs » Version: 2.01
    cpe:2.3:a:phpcrs:phpcrs:2.01
  • Phpcrs » Phpcrs » Version: 2.02
    cpe:2.3:a:phpcrs:phpcrs:2.02
  • Phpcrs » Phpcrs » Version: 2.03
    cpe:2.3:a:phpcrs:phpcrs:2.03
  • Phpcrs » Phpcrs » Version: 2.04
    cpe:2.3:a:phpcrs:phpcrs:2.04
  • Phpcrs » Phpcrs » Version: 2.05
    cpe:2.3:a:phpcrs:phpcrs:2.05


Contact Us

Shodan ® - All rights reserved