VULNERABILITY INTELLIGENCE

CVE-2007-2736

CVSS score10 HIGH
EPSS probability4.09%
CISA KEVNot currently listed
Published2007-05-17
Last modified2026-06-16
CVSS vectorAV:N/AC:L/Au:N/C:C/I:C/A:C

Description

PHP remote file inclusion vulnerability in index.php in Achievo 1.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the config_atkroot parameter.

Primary references