7.5
CVSSv2

CVE-2006-0887

Published: 25/02/2006 Updated: 20/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Eval injection vulnerability in sessions.inc in PHP Base Library (PHPLib) prior to 7.4a, when index.php3 from the PHPLib distribution is available on the server, allows remote malicious users to execute arbitrary PHP code by including a base64-encoded representation of the code in a cookie. NOTE: this description was significantly updated on 20060605 to reflect new details after an initial vague advisory.

Vulnerable Product Search on Vulmon Subscribe to Product

phplib team phplib 7.4

Exploits

PHPLib SQL Injection Vendor: PHPLib Product: PHPLib Version: <= 74 Website: phplibsourceforgenet/ BID: 16801 CVE: CVE-2006-0887 CVE-2006-2826 OSVDB: 23466 SECUNIA: 16902 Description: The PHP Base Library aka PHPLib is a toolkit for PHP developers supporting them in the development of Web applications The phpLib codebase can be ...