Vulnerabilities > CVE-2006-5016 - Remote File Include vulnerability in E-Vision CMS 1.0

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
low complexity
e-vision
exploit available

Summary

Unrestricted file upload vulnerability in admin/x_image.php in Szava Gyula and Csaba Tamas e-Vision CMS, probably 1.0, allows remote attackers to upload arbitrary files to the /imagebank directory.

Vulnerable Configurations

Part Description Count
Application
E-Vision
1

Exploit-Db

descriptione-Vision CMS <= 2.02 (SQL/Upload/IG) Multiple Remote Vulnerabilities. CVE-2006-5016,CVE-2008-0856. Webapps exploit for php platform
idEDB-ID:6191
last seen2016-01-31
modified2008-08-02
published2008-08-02
reporterKhashayar Fereidani
sourcehttps://www.exploit-db.com/download/6191/
titlee-vision CMS <= 2.02 sql/upload/ig Multiple Vulnerabilities