vendor:
Vikingboard
by:
dun
7.5
CVSS
HIGH
Local File Inclusion
98
CWE
Product Name: Vikingboard
Affected Version From: 0.2 Beta
Affected Version To: 0.2 Beta
Patch Exists: YES
Related CWE: N/A
CPE: a:vikingboard:vikingboard
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2008
Vikingboard <= 0.2 Beta Local File Inclusion Vulnerability
Vikingboard is a PHP-based discussion forum. A vulnerability exists in Vikingboard 0.2 Beta which allows attackers to include arbitrary local files via the 'task' parameter in the 'index.php' script. This can be exploited to disclose sensitive information or to execute arbitrary PHP code.
Mitigation:
Upgrade to the latest version of Vikingboard.