CVE-2009-2143

PHP remote file inclusion vulnerability in firestats-wordpress.php in the FireStats plugin before 1.6.2-stable for WordPress allows remote attackers to execute arbitrary PHP code via a URL in the fs_javascript parameter.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 78%
VendorProductVersion
firestatsfirestats
𝑥
≤ 1.6.1
firestatsfirestats
0.9.0-beta
firestatsfirestats
0.9.1-beta
firestatsfirestats
0.9.2-beta
firestatsfirestats
0.9.3-beta
firestatsfirestats
0.9.4-beta
firestatsfirestats
0.9.5-beta
firestatsfirestats
0.9.6-beta
firestatsfirestats
0.9.7-beta
firestatsfirestats
0.9.8-beta
firestatsfirestats
0.9.9
firestatsfirestats
1.0
firestatsfirestats
1.0.0:rc1
firestatsfirestats
1.0.1:rc2
firestatsfirestats
1.0.2:rc3
firestatsfirestats
1.0.2:stable
firestatsfirestats
1.1.1:rc1
firestatsfirestats
1.1.2:rc2
firestatsfirestats
1.1.3:rc3
firestatsfirestats
1.1.3:rc4
firestatsfirestats
1.1.4:rc5
firestatsfirestats
1.1.5:stable
firestatsfirestats
1.1.6:stable
firestatsfirestats
1.1.7:stable
firestatsfirestats
1.1.8:stable
firestatsfirestats
1.2.0-beta
firestatsfirestats
1.2.1:rc1
firestatsfirestats
1.2.2:rc2
firestatsfirestats
1.2.3:rc3
firestatsfirestats
1.2.4:stable
firestatsfirestats
1.3.0-beta
firestatsfirestats
1.3.1-beta
firestatsfirestats
1.3.2-beta
firestatsfirestats
1.3.3-beta
firestatsfirestats
1.3.4:rc1
firestatsfirestats
1.3.5:rc2
firestatsfirestats
1.3.6:stabe
firestatsfirestats
1.4
firestatsfirestats
1.4.0-beta
firestatsfirestats
1.4.1-beta
firestatsfirestats
1.4.2-beta
firestatsfirestats
1.4.3:rc1
firestatsfirestats
1.4.4:stable
firestatsfirestats
1.5
firestatsfirestats
1.5.0-beta
firestatsfirestats
1.5.1-beta
firestatsfirestats
1.5.2-beta
firestatsfirestats
1.5.3:rc1
firestatsfirestats
1.5.4:rc2
firestatsfirestats
1.5.5:rc3
firestatsfirestats
1.5.7:rc1
firestatsfirestats
1.5.8:rc2
firestatsfirestats
1.5.9:rc3
firestatsfirestats
1.5.10:rc4
firestatsfirestats
1.5.11:stable
firestatsfirestats
1.5.12:stable
firestatsfirestats
1.6
firestatsfirestats
1.6.0
firestatsfirestats
1.6.0:rc1
firestatsfirestats
1.6.0:rc2
firestatsfirestats
1.6.0:rc3
firestatsfirestats
1.6.0:rc4
firestatsfirestats
1.6.0:stable
firestatsfirestats
1.6.0-beta1
firestatsfirestats
1.6.0-beta2
firestatsfirestats
1.6.1
𝑥
= Vulnerable software versions