Back to search
CVE-2006-2583
Published: May 25, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
PHP remote file inclusion vulnerability in nucleus/libs/PLUGINADMIN.php in Nucleus 3.22 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[DIR_LIBS] parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20219
third-party-advisory
x_refsource_SECUNIA
951
third-party-advisory
x_refsource_SREASON
http://www.nucleuscms.org/item/3038
x_refsource_CONFIRM
20060523 Nucleus CMS <= 3.22 arbitrary remote inclusion
mailing-list
x_refsource_BUGTRAQ
http://retrogod.altervista.org/nucleus_322_incl_xpl.html
x_refsource_MISC
nucleus-dirlibs-file-include(26606)
vdb-entry
x_refsource_XF
1016146
vdb-entry
x_refsource_SECTRACK
ADV-2006-1936
vdb-entry
x_refsource_VUPEN
18097
vdb-entry
x_refsource_BID
http://forum.nucleuscms.org/viewtopic.php?t=12304
x_refsource_CONFIRM
25749
vdb-entry
x_refsource_OSVDB
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now