Zurück zur CVE-Übersicht
CVE-2002-2019
HIGH(7.5)AV:N/AC:L/Au:N/C:P/I:P/A:P
Risk Signal Score20/100 — NIEDRIG
- CVSS 7.5 — Hoch
EPSS-Score
3%
Exploit-Wahrscheinlichkeit (30 Tage)
CVSS Score
7.5
Technische Schwere
Beschreibung
PHP remote file inclusion vulnerability in include_once.php in osCommerce (a.k.a. Exchange Project) 2.1 allows remote attackers to execute arbitrary PHP code via the include_file parameter.
Referenzen
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0188.html
- http://www.iss.net/security_center/static/9369.php
- http://www.oscommerce.com/about.php/news%2C72
- http://www.securityfocus.com/bid/5037
- http://archives.neohapsis.com/archives/bugtraq/2002-06/0188.html
- http://www.iss.net/security_center/static/9369.php
- http://www.oscommerce.com/about.php/news%2C72
- http://www.securityfocus.com/bid/5037