Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2006-6867
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-6867

Description:
Multiple PHP remote file inclusion vulnerabilities in Vladimir Menshakov buratinable templator (aka bubla) 0.9.1 allow remote attackers to execute arbitrary PHP code via a URL in the bu_dir parameter to (1) bu/bu_claro.php, (2) bu/bu_cache.php, or (3) bu/bu_parse.php, different vectors and a different affected version than CVE-2006-6809.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/31135
  http://xforce.iss.net/xforce/xfdb/31201

SAID
  Secunia Advisory: SA23570

MISC
  http://www.milw0rm.com/exploits/3059

BID
  21838


Return to the previous page.