6.8
CVSSv2

CVE-2006-4074

Published: 11/08/2006 Updated: 07/11/2023
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in lib/tpl/default/main.php in the JD-Wiki Component (com_jd-wiki) 1.0.2 and previous versions for Joomla!, when register_globals is enabled, allows remote malicious users to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

joomla jd-wiki

Exploits

#################################################################################### #JD-Wiki Remote File Include ------------------------------------------------------------------------------------ JD-Wiki is the Joomla! integration of the nice DokuWiki DokuWiki is a standards compliant, simple to use Wiki, mainly aimed at creating documentation ...