PHP remote file inclusion vulnerability in direct.php in ActualScripts ActualAnalyzer Lite 2.72 and earlier, Gold 7.63 and earlier, and Server 8.23 and earlier allows remote attackers to execute arbitrary code via a URL in the rf parameter.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 00:10
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/19743 - | |
References | () http://securityreason.com/securityalert/742 - | |
References | () http://securitytracker.com/id?1015967 - | |
References | () http://www.osvdb.org/24778 - | |
References | () http://www.securityfocus.com/archive/1/431351/100/0/threaded - | |
References | () http://www.securityfocus.com/archive/1/434562/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/17597 - | |
References | () http://www.vupen.com/english/advisories/2006/1430 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/25893 - |
Information
Published : 2006-04-21 10:02
Updated : 2024-11-21 00:10
NVD link : CVE-2006-1959
Mitre link : CVE-2006-1959
CVE.ORG link : CVE-2006-1959
JSON object : View
Products Affected
actualscripts
- actualanalyzer
CWE