7.5
CVSSv2

CVE-2006-5831

Published: 10/11/2006 Updated: 17/10/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in admin/code/index.php in All In One Control Panel (AIOCP) 1.3.007 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the load_page parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

aiocp aiocp 1.3.007

aiocp aiocp 1.3.003

aiocp aiocp 1.3.004

aiocp aiocp 1.3.000

aiocp aiocp 1.3.001

aiocp aiocp 1.3.002

aiocp aiocp 1.3.005

aiocp aiocp 1.3.006

Exploits

source: wwwsecurityfocuscom/bid/20931/info All In One Control Panel (AIOCP) is prone to multiple input-validation vulnerabilities because it fails to sufficiently sanitize user-supplied input data Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, access or modify sensitive data, ex ...