PT-2009-6285 · Agoko · Agoko Cms

Staker

·

Published

2009-11-28

·

Updated

2017-09-19

·

CVE-2009-4106

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Agoko CMS versions 0.4 and earlier
Description The issue allows remote attackers to inject and execute arbitrary PHP code via the filename and text parameters in the admintools/editpage-2.php file.
Recommendations For Agoko CMS versions 0.4 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2009-4106

Affected Products

Agoko Cms