PT-2006-5789 · Joomla · Security Images

Drago84

·

Published

2006-09-27

·

Updated

2017-10-19

·

CVE-2006-5048

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Security Images (com securityimages) component versions 3.0.5 and earlier for Joomla!
Description The issue allows remote attackers to execute arbitrary code via a URL in the mosConfig absolute path parameter in several PHP files, including "configinsert.php", "lang.php", "client.php", and "server.php".
Recommendations For Security Images (com securityimages) component versions 3.0.5 and earlier, update to a version later than 3.0.5 to resolve the issue.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2006-5048

Affected Products

Security Images