This page aggregates publicly disclosed CVE and security risk information related to php_firstpost, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2007-2665 | PHP remote file inclusion vulnerability in block.php in PhpFirstPost 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the Include parameter. | [email protected] | 7.5 | 2.49% | 2007-05-14 | 2026-06-16 |
| CVE-2005-2412 | PHP remote file inclusion vulnerability in block.php in PHP FirstPost allows remote attackers to execute arbitrary PHP code via the Include parameter. | [email protected] | 5.0 | 2.58% | 2005-08-03 | 2026-06-16 |
| CVE-2002-0445 | article.php in PHP FirstPost 0.1 allows allows remote attackers to obtain the full pathname of the server via an invalid post number in the post parameter, which leaks the pathname in an error message. | [email protected] | 5.0 | 2.10% | 2002-07-26 | 2026-06-16 |