关键漏洞信息 漏洞名称: RIG Image Gallery (dir_abs_src) Remote File Include Vulnerability CVE编号: CVE-2007-4127 风险等级: High 远程利用: Yes 风险评分: - CVSS Base Score: 6.8/10 - Impact Subscore: 6.4/10 - Exploitability Subscore: 8.6/10 - Exploit Range: Remote 影响细节: - Attack Complexity: Medium - Confidentiality Impact: Partial - Integrity Impact: Partial - Availability Impact: Partial - Authentication: No required 漏洞描述: - 漏洞存在于RIG Image Gallery的 参数中,允许远程文件包含攻击。 - 漏洞代码示例: 漏洞利用方式: 联系人: Ilker Kandemir 脚本下载地址: http://sourceforge.net/project/showfiles.php?group_id=54367 标签: Fake news / Disputed / BOGUS 感谢: Hotturk, Ajann, Dumenci, Str0ke