Back to search
CVE-2006-5399
Published: Oct 18, 2006
Modified: Aug 7, 2024
PUBLISHED
Description
PHP remote file inclusion vulnerability in classes/Import_MM.class.php in PHPRecipeBook 2.36, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the g_rb_basedir parameter.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
20575
vdb-entry
x_refsource_BID
20061019 Re: PHPRecipeBook <= 2.35 ((g_rb_basedir)) Remote File Include Exploit
mailing-list
x_refsource_BUGTRAQ
20061018 Re: PHPRecipeBook <= 2.35 ((g_rb_basedir)) Remote File Include Exploit
mailing-list
x_refsource_BUGTRAQ
2584
exploit
x_refsource_EXPLOIT-DB
phprecipebook-import-file-include(29611)
vdb-entry
x_refsource_XF
20061018 PHPRecipeBook <= 2.35 ((g_rb_basedir)) Remote File Include Exploit
mailing-list
x_refsource_BUGTRAQ
22427
third-party-advisory
x_refsource_SECUNIA
ADV-2006-4051
vdb-entry
x_refsource_VUPEN
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now