PT-2006-1610 · Php · Php

Published

2006-02-04

·

Updated

2018-10-19

·

CVE-2006-0546

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Certain application available from /v1/tr/portfoy.php on www.egeinternet.com (affected versions not specified)
Description The issue allows remote attackers to execute arbitrary code via "evilcode" in the key parameter, possibly due to a PHP remote file include vulnerability. The attack vector is a URL in the key parameter. It is not clear whether this issue is associated with an online service or application service provider.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-0546

Affected Products

Php