7.5
CVSSv2

CVE-2006-5255

Published: 12/10/2006 Updated: 17/05/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in addnews.php in Greg Neustaetter gCards 1.13 allows remote malicious users to execute arbitrary PHP code via a URL in the languagefile parameter. NOTE: another researcher has observed that languageFile is defined before use. CVE analysis as of 20061012 concurs with the dispute

Vulnerable Product Search on Vulmon Subscribe to Product

greg neustaetter gcards 1.13