Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-2762

Опубликовано: 02 июн. 2006
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4

Описание

PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely accessed in an fopen call whose results are used to define a user_inc setting that is used in an include_once call.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

1.0.4-1
edgy

released

1.0.4-1
feisty

DNE

gutsy

released

1.0.4-1
hardy

released

1.0.4-1
intrepid

released

1.0.4-1
jaunty

released

1.0.4-1
karmic

released

1.0.4-1
upstream

needs-triage

Показывать по

Ссылки на источники

6.4 Medium

CVSS2

Связанные уязвимости

nvd
больше 19 лет назад

PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely accessed in an fopen call whose results are used to define a user_inc setting that is used in an include_once call.

debian
больше 19 лет назад

PHP remote file inclusion vulnerability in includes/config.php in WebC ...

github
почти 4 года назад

PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely accessed in an fopen call whose results are used to define a user_inc setting that is used in an include_once call.

6.4 Medium

CVSS2