Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-0659
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-0659

Description:
Multiple PHP remote file include vulnerabilities in RunCMS 1.2 and earlier, with register_globals and allow_url_fopen enabled, allow remote attackers to execute arbitrary code via the bbPath[path] parameter in (1) class.forumposts.php and (2) forumpollrenderer.php.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA18800

MISC
  http://retrogod.altervista.org/runcms_13a_xpl.html

BUGTRAQ
  http://www.securityfocus.com/archive/1/424708

BID
  16578


Return to the previous page.