5
CVSSv2

CVE-2006-1955

Published: 21/04/2006 Updated: 14/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

PHP remote file inclusion vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote malicious users to execute arbitrary PHP code via a URL in the rootpath parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

nfec.de rechnungszentrale v2_1.1.3