CVE-2009-4082

PHP remote file inclusion vulnerability in forums/Forum_Include/index.php in Outreach Project Tool (OPT) 1.2.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the CRM_path parameter.
Code Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
VendorProductVersion
lanifexoutreach_project_tool
𝑥
≤ 1.2.7
lanifexoutreach_project_tool
0.94:beta
lanifexoutreach_project_tool
0.933:beta
lanifexoutreach_project_tool
0.934:beta
lanifexoutreach_project_tool
0.935:beta
lanifexoutreach_project_tool
0.936:beta
lanifexoutreach_project_tool
0.937:beta
lanifexoutreach_project_tool
0.938:beta
lanifexoutreach_project_tool
0.939:beta
lanifexoutreach_project_tool
0.941:beta
lanifexoutreach_project_tool
0.942:beta
lanifexoutreach_project_tool
0.943:beta
lanifexoutreach_project_tool
0.944:beta
lanifexoutreach_project_tool
0.945:beta
lanifexoutreach_project_tool
0.946:beta
lanifexoutreach_project_tool
0.947:beta
lanifexoutreach_project_tool
0.948:beta
lanifexoutreach_project_tool
1.2.6
𝑥
= Vulnerable software versions