|
|

CVE Reference: CVE-2006-3323 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2006-3323 |
|
|
Description: PHP remote file inclusion vulnerability in admin/admin.php in MF Piadas 1.0 allows remote attackers to execute arbitrary PHP code via the page parameter. NOTE: the same vector can be used for cross-site scripting, but CVE analysis suggests that this is resultant from file inclusion of HTML or script. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/27412 http://xforce.iss.net/xforce/xfdb/27415 SREASON http://securityreason.com/securityalert/1172 SAID Secunia Advisory: SA20847 OSVDB 26868 26867 MISC http://kurdishsecurity.blogspot.com/2006/06/kurdish-security-10-mf-piadas-10.html BUGTRAQ http://www.securityfocus.com/archive/1/archive/1/438496/100/0/threaded BID 18676 18679 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |