CVE Database
/

CVE-2006-2811

Back to search

CVE-2006-2811

Published: Jun 5, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple PHP remote file inclusion vulnerabilities in Cantico Ovidentia 5.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the babInstallPath parameter in (1) index.php, (2) topman.php, (3) approb.php, (4) vacadmb.php, (5) vacadma.php, (6) vacadm.php, (7) statart.php, (8) search.php, (9) posts.php, (10) options.php, (11) login.php, (12) frchart.php, (13) flbchart.php, (14) fileman.php, (15) faq.php, (16) event.php, (17) directory.php, (18) articles.php, (19) artedit.php, (20) calday.php, and additional unspecified PHP scripts. NOTE: the utilit.php vector is already covered by CVE-2005-1964.

VendorProductVersions

n/a

n/a

affected
n/a

References

27223
vdb-entry
x_refsource_OSVDB
27228
vdb-entry
x_refsource_OSVDB
27215
vdb-entry
x_refsource_OSVDB
27224
vdb-entry
x_refsource_OSVDB
27214
vdb-entry
x_refsource_OSVDB
1033
third-party-advisory
x_refsource_SREASON
27216
vdb-entry
x_refsource_OSVDB
27212
vdb-entry
x_refsource_OSVDB
27222
vdb-entry
x_refsource_OSVDB
27221
vdb-entry
x_refsource_OSVDB
27226
vdb-entry
x_refsource_OSVDB
27220
vdb-entry
x_refsource_OSVDB
27225
vdb-entry
x_refsource_OSVDB
27211
vdb-entry
x_refsource_OSVDB
27229
vdb-entry
x_refsource_OSVDB
18232
vdb-entry
x_refsource_BID
27209
vdb-entry
x_refsource_OSVDB
27218
vdb-entry
x_refsource_OSVDB
27217
vdb-entry
x_refsource_OSVDB
27227
vdb-entry
x_refsource_OSVDB
27213
vdb-entry
x_refsource_OSVDB
27219
vdb-entry
x_refsource_OSVDB
20070209 Ovidentia Exploit Codeds
mailing-list
x_refsource_BUGTRAQ

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now