Vulnerabilities > CVE-2007-3980 - Remote File Include vulnerability in Rcms PRO Rgamescript PRO 0

047910
CVSS 10.0 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
low complexity
rcms-pro
critical
exploit available

Summary

PHP remote file inclusion vulnerability in page.php in RCMS Pro RGameScript Pro allows remote attackers to execute arbitrary PHP code via a URL in the id parameter.

Vulnerable Configurations

Part Description Count
Application
Rcms_Pro
1

Exploit-Db

descriptionRGameScript Pro (page.php id) Remote File Inclusion Vulnerability. CVE-2007-3980. Webapps exploit for php platform
fileexploits/php/webapps/4210.txt
idEDB-ID:4210
last seen2016-01-31
modified2007-07-21
platformphp
port
published2007-07-21
reporterWarpboy
sourcehttps://www.exploit-db.com/download/4210/
titleRGameScript Pro page.php id Remote File Inclusion Vulnerability
typewebapps