Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-5634
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-5634

Description:
Multiple PHP remote file inclusion vulnerabilities in phpProfiles 2.1 Beta allow remote attackers to execute arbitrary PHP code via a URL in the (1) reqpath parameter to (a) body.inc.php and (b) body_blog.inc.php in users/include/; or the (2) usrinc parameter in users/include/upload_ht.inc.php.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/29900

SAID
  Secunia Advisory: SA22644

OSVDB
  30137
  30136
  30138

MISC
  http://www.milw0rm.com/exploits/2688

BID
  20819


Return to the previous page.