Vulnerabilities > CVE-2007-0150 - Remote Security vulnerability in Dayfox Designs Dayfox Blog 4

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
dayfox-designs

Summary

Multiple PHP remote file inclusion vulnerabilities in index.php in Dayfox Blog allow remote attackers to execute arbitrary PHP code via a URL in the (1) page, (2) subject, and (3) q parameters.

Vulnerable Configurations

Part Description Count
Application
Dayfox_Designs
1