CVE-2007-3370

Multiple PHP remote file inclusion vulnerabilities in Sun Board 1.00.00 Alpha allow remote attackers to execute arbitrary PHP code via a URL in (1) the sunPath parameter to include.php or (2) the dir parameter to skin/board/default/doctype.php.
Configurations

Configuration 1 (hide)

cpe:2.3:a:kim_kyoung_min:sun_board:1.00.00_alpha:*:*:*:*:*:*:*

History

21 Nov 2024, 00:33

Type Values Removed Values Added
References () http://osvdb.org/36281 - () http://osvdb.org/36281 -
References () http://osvdb.org/36282 - () http://osvdb.org/36282 -
References () http://www.securityfocus.com/bid/24588 - () http://www.securityfocus.com/bid/24588 -
References () http://www.vupen.com/english/advisories/2007/2307 - () http://www.vupen.com/english/advisories/2007/2307 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/35006 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/35006 -
References () https://www.exploit-db.com/exploits/4091 - () https://www.exploit-db.com/exploits/4091 -

Information

Published : 2007-06-22 18:30

Updated : 2025-04-09 00:30


NVD link : CVE-2007-3370

Mitre link : CVE-2007-3370

CVE.ORG link : CVE-2007-3370


JSON object : View

Products Affected

kim_kyoung_min

  • sun_board