CVE-2008-4526
23Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 3.5%
exploitation probability
3.5%top 12% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple directory traversal vulnerabilities in CCMS 3.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the skin parameter to (1) index.php, (2) forums.php, (3) admin.php, (4) header.php, (5) pages/story.php and (6) pages/poll.php.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/6663⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.