Vulnerability Details CVE-2007-4820
Absolute path traversal vulnerability in blanko.preview.php in Sisfo Kampus 2006 allows remote attackers to read arbitrary local files, and possibly execute local PHP scripts, via the nmf parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.023
EPSS Ranking 81.7%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2007-4820
-
cpe:2.3:a:sisfo_kampus:sisfo_kampus:2006