Логотип exploitDog
bind:CVE-2006-3387
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2006-3387

Количество 2

Количество 2

nvd логотип

CVE-2006-3387

больше 19 лет назад

Directory traversal vulnerability in sources/post.php in Fusion News 1.0, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the fil_config parameter, which can be used to execute PHP code that has been injected into a log file.

CVSS2: 5.1
EPSS: Низкий
github логотип

GHSA-v8jw-9qw2-726j

почти 4 года назад

Directory traversal vulnerability in sources/post.php in Fusion News 1.0, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the fil_config parameter, which can be used to execute PHP code that has been injected into a log file.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2006-3387

Directory traversal vulnerability in sources/post.php in Fusion News 1.0, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the fil_config parameter, which can be used to execute PHP code that has been injected into a log file.

CVSS2: 5.1
7%
Низкий
больше 19 лет назад
github логотип
GHSA-v8jw-9qw2-726j

Directory traversal vulnerability in sources/post.php in Fusion News 1.0, when register_globals is enabled, allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the fil_config parameter, which can be used to execute PHP code that has been injected into a log file.

7%
Низкий
почти 4 года назад

Уязвимостей на страницу