Vulnerabilities > CVE-2006-4596 - Unspecified vulnerability in Mybace Light Mybace Light

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
mybace-light
exploit available

Summary

PHP remote file inclusion in MyBace Light Skrip, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the (1) hauptverzeichniss parameter in includes/login_check.php and the (2) template_back parameter in admin/login/content/user_daten.php.

Vulnerable Configurations

Part Description Count
Application
Mybace_Light
1

Exploit-Db

descriptionMyBace Light (login_check.php) Remote File Vulnerability. CVE-2006-4596. Webapps exploit for php platform
idEDB-ID:2285
last seen2016-01-31
modified2006-09-01
published2006-09-01
reporterPhilipp Niedziela
sourcehttps://www.exploit-db.com/download/2285/
titleMyBace Light login_check.php Remote File Vulnerability