CVE Database
/

CVE-2006-3116

Back to search

CVE-2006-3116

Published: Jun 29, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple PHP remote file inclusion vulnerabilities in phpRaid 3.0.4 and 3.0.5 allow remote attackers to execute arbitrary code via a URL in the phpraid_dir parameter to (1) configuration.php, (3) guilds.php, (4) index.php, (5) locations.php, (6) login.php, (7) lua_output.php, (8) permissions.php, (9) profile.php, (10) raids.php, (11) register.php, (12) roster.php, and (13) view.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

26893
vdb-entry
x_refsource_OSVDB
26902
vdb-entry
x_refsource_OSVDB
26901
vdb-entry
x_refsource_OSVDB
26899
vdb-entry
x_refsource_OSVDB
18719
vdb-entry
x_refsource_BID
26892
vdb-entry
x_refsource_OSVDB
26896
vdb-entry
x_refsource_OSVDB
26891
vdb-entry
x_refsource_OSVDB
26895
vdb-entry
x_refsource_OSVDB
26894
vdb-entry
x_refsource_OSVDB
26900
vdb-entry
x_refsource_OSVDB
26897
vdb-entry
x_refsource_OSVDB
26898
vdb-entry
x_refsource_OSVDB
20200
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now