CVE Database
/

CVE-2006-6285

Back to search

CVE-2006-6285

Published: Dec 4, 2006

Modified: Aug 7, 2024

PUBLISHED

Description

PHP remote file inclusion vulnerability in index.php in Kai Blankenhorn Bitfolge simple and nice index file (aka snif) 1.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the externalConfig parameter. NOTE: CVE and other third parties dispute this vulnerability because $externalConfig is defined before use

VendorProductVersions

n/a

n/a

affected
n/a

References

21378
vdb-entry
x_refsource_BID
20061204 snif RFI curiosity
mailing-list
x_refsource_VIM
snif-index-file-include(30613)
vdb-entry
x_refsource_XF
2868
exploit
x_refsource_EXPLOIT-DB
20061204 snif RFI curiosity
mailing-list
x_refsource_VIM

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now