CVE-2007-2204
Last modified
CVE-2007-2204 is a vulnerability of currently unknown severity. Multiple PHP remote file inclusion vulnerabilities in GPL PHP Board (GPB) unstable-2001.11.14-1 allow remote attackers to execute arbitrary PHP code via a URL in the root_path parameter to (1) db.mysql.inc.php or (2) gpb.inc.php in include/, or the (3) theme parameter to themes/ubb/login.php.. EPSS estimates a 3.39% chance of exploitation in the next 30 days.
Description
Multiple PHP remote file inclusion vulnerabilities in GPL PHP Board (GPB) unstable-2001.11.14-1 allow remote attackers to execute arbitrary PHP code via a URL in the root_path parameter to (1) db.mysql.inc.php or (2) gpb.inc.php in include/, or the (3) theme parameter to themes/ubb/login.php.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Gpl Php Board | Gpl Php Board | 2001-11-14_1 | Unstable |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-2204?
How severe is CVE-2007-2204?
How do I fix CVE-2007-2204?
Are you affected by CVE-2007-2204?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
