Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Broken-Proxy

#36477of 53,624
7.5Total CVSS
Vulnerabilities · 1
PT-2006-6481
7.5
2006-11-08
Unknown · Advanced Guestbook · CVE-2006-5804
Name of the Vulnerable Software and Affected Versions: Advanced Guestbook version 2.3.1 Description: The issue allows remote attackers to execute arbitrary PHP code via a URL in the `include path` parameter in the admin.php file. Recommendations: For Advanced Guestbook version 2.3.1, consider restricting access to the admin.php file and avoid using the `include path` parameter until a patch is available.