Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-2762

Опубликовано: 02 июн. 2006
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.4

Описание

PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely accessed in an fopen call whose results are used to define a user_inc setting that is used in an include_once call.

РелизСтатусПримечание
dapper

ignored

end of life
devel

released

1.0.4-1
edgy

released

1.0.4-1
feisty

DNE

gutsy

released

1.0.4-1
hardy

released

1.0.4-1
intrepid

released

1.0.4-1
jaunty

released

1.0.4-1
karmic

released

1.0.4-1
upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 75%
0.0103
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

nvd
больше 19 лет назад

PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely accessed in an fopen call whose results are used to define a user_inc setting that is used in an include_once call.

debian
больше 19 лет назад

PHP remote file inclusion vulnerability in includes/config.php in WebC ...

github
больше 3 лет назад

PHP remote file inclusion vulnerability in includes/config.php in WebCalendar 1.0.3 allows remote attackers to execute arbitrary PHP code via a URL in the includedir parameter, which is remotely accessed in an fopen call whose results are used to define a user_inc setting that is used in an include_once call.

EPSS

Процентиль: 75%
0.0103
Низкий

6.4 Medium

CVSS2