Back
CVE-2003-1410
PHP remote file inclusion vulnerability in email.php (aka email.php3) in Cedric Email Reader 0.2 and 0.3 allows remote attackers to execute arbitrary PHP code via the cer_skin parameter.
Published: Dec 31, 2003
Modified: Jun 16, 2026
CWE-94
CVSS Metrics
Affected Products (2)
| Vendor | Product | Version |
|---|---|---|
| isoca | cedric_email_reader | 0.2 |
| isoca | cedric_email_reader | 0.3 |
GitHub Security Advisory GHSA-xhx4-qmff-87w3
PHP remote file inclusion vulnerability in email.php (aka email.php3) in Cedric Email Reader 0.2...
References (10)
- http://secunia.com/advisories/8024
- http://www.osvdb.org/5487
- http://www.securityfocus.com/archive/1/311173 Exploit
- http://www.securityfocus.com/bid/6818 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11278
- http://secunia.com/advisories/8024
- http://www.osvdb.org/5487
- http://www.securityfocus.com/archive/1/311173 Exploit
- http://www.securityfocus.com/bid/6818 Exploit
- https://exchange.xforce.ibmcloud.com/vulnerabilities/11278
Risk Scores
CVSS Score
6.8 / 10
EPSS Score
2.26%
Top 19% most likely to be exploited
Threat Score
27.9 / 100
Data Sources
NVD
EPSS
GitHub