Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2006-5776

Опубликовано: 07 нояб. 2006
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

Multiple PHP remote file inclusions in Ariadne 2.4.1 allows remote attackers to execute arbitrary PHP code via the ariadne parameter in (1) ftp/loader.php and (2) lib/includes/loader.cmd.php. NOTE: this issue is disputed by CVE, since installation instructions recommend that the files be placed outside of the web document root and require the administrator to modify $ariadne in an include file

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:ariadne:ariadne_cms:2.4.1:*:*:*:*:*:*:*

EPSS

Процентиль: 84%
0.02088
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

** DISPUTED ** Multiple PHP remote file inclusions in Ariadne 2.4.1 allows remote attackers to execute arbitrary PHP code via the ariadne parameter in (1) ftp/loader.php and (2) lib/includes/loader.cmd.php. NOTE: this issue is disputed by CVE, since installation instructions recommend that the files be placed outside of the web document root and require the administrator to modify $ariadne in an include file.

EPSS

Процентиль: 84%
0.02088
Низкий

7.5 High

CVSS2

Дефекты

NVD-CWE-Other