Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-5435

Опубликовано: 20 окт. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

PHP remote file inclusion vulnerability in groupcp.php in phpBB 2.0.10 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: CVE and the vendor dispute this vulnerability because $phpbb_root_path is defined before use

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:phpbb_group:phpbb:*:*:*:*:*:*:*:*
Версия до 2.0.10 (включая)

EPSS

Процентиль: 74%
0.00939
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

debian
около 19 лет назад

PHP remote file inclusion vulnerability in groupcp.php in phpBB 2.0.10 ...

github
больше 3 лет назад

** DISPUTED ** PHP remote file inclusion vulnerability in groupcp.php in phpBB 2.0.10 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter. NOTE: CVE and the vendor dispute this vulnerability because $phpbb_root_path is defined before use.

EPSS

Процентиль: 74%
0.00939
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other