Multiple PHP remote file inclusion vulnerabilities in (1) eday.php, (2) eshow.php, or (3) forgot.php in albinator 2.0.8 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the Config_rootdir parameter.
References
Configurations
History
21 Nov 2024, 00:10
Type | Values Removed | Values Added |
---|---|---|
References | () http://pridels0.blogspot.com/2006/05/albinator-208-remote-file-inclusion.html - | |
References | () http://secunia.com/advisories/19952 - | |
References | () http://www.osvdb.org/25239 - | |
References | () http://www.osvdb.org/25240 - | |
References | () http://www.osvdb.org/25241 - | |
References | () http://www.securityfocus.com/bid/17825 - Exploit | |
References | () http://www.vupen.com/english/advisories/2006/1643 - |
Information
Published : 2006-05-04 12:38
Updated : 2024-11-21 00:10
NVD link : CVE-2006-2182
Mitre link : CVE-2006-2182
CVE.ORG link : CVE-2006-2182
JSON object : View
Products Affected
albinator
- albinator
CWE