Vulnerabilities > CVE-2006-1584 - Remote File Include vulnerability in Juliusz Julas Gonera Warcraft III Replay Parser PHP 1.8C

047910
CVSS 6.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
juliusz-julas-gonera
exploit available

Summary

Unspecified vulnerability in index.php in Warcraft III Replay Parser for PHP 1.8c allows remote attackers to inject arbitrary web script or HTML via the page parameter, possibly related to fopen function calls or file uploads. NOTE: post-disclosure analysis by CVE suggests that the "page" parameter is not used in this product, and "id" might be the affected parameter.

Vulnerable Configurations

Part Description Count
Application
Juliusz_Julas_Gonera
1

Exploit-Db

descriptionWarcraft III Replay Parser for PHP 1.8.c Index.PHP Remote File Include Vulnerability. CVE-2006-1584. Webapps exploit for php platform
idEDB-ID:27537
last seen2016-02-03
modified2006-03-31
published2006-03-31
reporterbotan
sourcehttps://www.exploit-db.com/download/27537/
titleWarcraft III Replay Parser for PHP 1.8.c Index.PHP Remote File Include Vulnerability