7.5
CVSSv2

CVE-2006-6710

Published: 23/12/2006 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple PHP remote file inclusion vulnerabilities in PgmReloaded 0.8.5 and previous versions allow remote malicious users to execute arbitrary PHP code via a URL in the (1) lang parameter to (a) index.php, the (2) CFG[libdir] and (3) CFG[localedir] parameters to (b) common.inc.php, and the CFG[localelangdir] parameter to (c) form_header.php.

Vulnerable Product Search on Vulmon Subscribe to Product

matteolucarelli pgmreloaded

matteolucarelli pgmreloaded 0.7.1

matteolucarelli pgmreloaded 0.7

matteolucarelli pgmreloaded 0.8.2

matteolucarelli pgmreloaded 0.8.1

matteolucarelli pgmreloaded 0.5

matteolucarelli pgmreloaded 0.8

matteolucarelli pgmreloaded 0.7.3

matteolucarelli pgmreloaded 0.8.4

matteolucarelli pgmreloaded 0.8.3

matteolucarelli pgmreloaded 0.6.2

matteolucarelli pgmreloaded 0.6

Exploits

+------------------------------------------------------------------------------------------- + PgmReloaded <= 085 Multiple Remote File Include Vulnerabilities +------------------------------------------------------------------------------------------- + Vendor : matteolucarellinet/ + Affected Software : PgmReloaded <= 0 ...