7.5
CVSSv2

CVE-2006-1636

Published: 06/04/2006 Updated: 18/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in get_header.php in VWar 1.5.0 R12 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the vwar_root parameter. NOTE: this is a different vulnerability than CVE-2006-1503.

Vulnerable Product Search on Vulmon Subscribe to Product

vwar virtual war 1.0.7

vwar virtual war 1.0.8

vwar virtual war 1.1.5

vwar virtual war 1.1.6

vwar virtual war 1.4

vwar virtual war 1.5

vwar virtual war 1.5.0_r5

vwar virtual war 1.5.0_r6

vwar virtual war 1.0.5

vwar virtual war 1.0.6

vwar virtual war 1.1.3

vwar virtual war 1.1.4

vwar virtual war 1.2.2

vwar virtual war 1.3

vwar virtual war 1.5.0_r3

vwar virtual war 1.5.0_r4

vwar virtual war 1.0.0

vwar virtual war 1.0.1

vwar virtual war 1.0.2

vwar virtual war 1.0.9

vwar virtual war 1.1.0

vwar virtual war 1.1.7

vwar virtual war 1.1.8

vwar virtual war 1.5.0_r1

vwar virtual war 1.5.0_r10

vwar virtual war 1.5.0_r11

vwar virtual war 1.5.0_r7

vwar virtual war 1.5.0_r8

vwar virtual war 1.0.3

vwar virtual war 1.0.4

vwar virtual war 1.1.1

vwar virtual war 1.1.2

vwar virtual war 1.2.0

vwar virtual war 1.2.1

vwar virtual war 1.5.0_r12

vwar virtual war 1.5.0_r2

vwar virtual war 1.5.0_r9