Vulnerability Details CVE-2010-0678
PHP remote file inclusion vulnerability in includes/moderation.php in Katalog Stron Hurricane 1.3.5, and possibly earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the includes_directory parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.012
EPSS Ranking 78.4%
CVSS Severity
CVSS v2 Score 6.8
Products affected by CVE-2010-0678
-
cpe:2.3:a:katalog.hurricane:katalog_stron_hurricane:1.3.5