Vulnerabilities > CVE-2006-5076 - Unspecified vulnerability in Back-End CMS 0.4.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN back-end
exploit available
Summary
Multiple PHP remote file inclusion vulnerabilities in OpenConcept Back-End 0.4.5 allow remote attackers to execute arbitrary PHP code via a URL in the includes_path parameter in (1) admin/index.php, (2) Facts.php, or (3) search.php.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description Back-End CMS 0.4.5 admin/index.php includes_path Parameter Remote File Inclusion. CVE-2006-5076. Webapps exploit for php platform id EDB-ID:28674 last seen 2016-02-03 modified 2006-09-25 published 2006-09-25 reporter Root3r_H3ll source https://www.exploit-db.com/download/28674/ title Back-End CMS 0.4.5 admin/index.php includes_path Parameter Remote File Inclusion description Back-End CMS 0.4.5 search.php includes_path Parameter Remote File Inclusion. CVE-2006-5076 . Webapps exploit for php platform id EDB-ID:28676 last seen 2016-02-03 modified 2006-09-25 published 2006-09-25 reporter Root3r_H3ll source https://www.exploit-db.com/download/28676/ title Back-End CMS 0.4.5 - search.php includes_path Parameter Remote File Inclusion description Back-End CMS 0.4.5 Facts.php includes_path Parameter Remote File Inclusion. CVE-2006-5076. Webapps exploit for php platform id EDB-ID:28675 last seen 2016-02-03 modified 2006-09-25 published 2006-09-25 reporter Root3r_H3ll source https://www.exploit-db.com/download/28675/ title Back-End CMS 0.4.5 Facts.php includes_path Parameter Remote File Inclusion
References
- http://securityreason.com/securityalert/1650
- http://securityreason.com/securityalert/1650
- http://www.securityfocus.com/archive/1/447005/100/0/threaded
- http://www.securityfocus.com/archive/1/447005/100/0/threaded
- http://www.securityfocus.com/archive/1/448776/100/0/threaded
- http://www.securityfocus.com/archive/1/448776/100/0/threaded
- http://www.securityfocus.com/archive/1/450031/100/200/threaded
- http://www.securityfocus.com/archive/1/450031/100/200/threaded
- http://www.securityfocus.com/bid/20207
- http://www.securityfocus.com/bid/20207
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29172
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29172
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29605
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29605