Vulnerabilities > CVE-2006-3040 - Unspecified vulnerability in AMR Talkbox AMR Talkbox
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
PHP remote file inclusion vulnerability in talkbox.php in Amr Talkbox allows remote attackers to execute arbitrary PHP code via a URL in the direct parameter. NOTE: this issue has been disputed by CVE, since the $direct variable is set to a static value just before the include statement
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://securityreason.com/securityalert/1105
- http://securityreason.com/securityalert/1105
- http://www.osvdb.org/27455
- http://www.osvdb.org/27455
- http://www.securityfocus.com/archive/1/436993/100/0/threaded
- http://www.securityfocus.com/archive/1/436993/100/0/threaded
- http://www.securityfocus.com/archive/1/437266/100/0/threaded
- http://www.securityfocus.com/archive/1/437266/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27122
- https://exchange.xforce.ibmcloud.com/vulnerabilities/27122