PT-2006-1610 · Php · Php

Publicado

2006-02-04

·

Atualizado

2018-10-19

·

CVE-2006-0546

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Certain application available from /v1/tr/portfoy.php on www.egeinternet.com (affected versions not specified)
Description The issue allows remote attackers to execute arbitrary code via "evilcode" in the key parameter, possibly due to a PHP remote file include vulnerability. The attack vector is a URL in the key parameter. It is not clear whether this issue is associated with an online service or application service provider.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-0546

Produtos afetados

Php