Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Noislet

#48568de 53,633
5.1CVSS total
Vulnerabilidades · 1
PT-2006-6248
5.1
2006-10-26
Aroundme · Aroundme · CVE-2006-5533
**Name of the Vulnerable Software and Affected Versions** AROUNDMe versions 0.6.9 and earlier **Description** The issue allows remote attackers to execute arbitrary PHP code when register globals is enabled. This is achieved by providing a URL in the `templatePath` parameter in files such as template/barnraiser 01/pol view.tpl.php and other unspecified PHP scripts. **Recommendations** For AROUNDMe versions 0.6.9 and earlier, consider disabling the register globals setting to prevent exploitation. Additionally, restrict access to the `templatePath` parameter in affected PHP scripts until a fix is available.