Vulnerabilities > CVE-2006-5089 - Unspecified vulnerability in My-Bic 0.6.5

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
my-bic
exploit available

Summary

PHP remote file inclusion vulnerability in mybic_server.php in Jim Plush My-BIC 0.6.5 allows remote attackers to execute arbitrary PHP code via a URL in the file parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information. CVE disputes this vulnerability because the file variable is defined before use in a way that prevents arbitrary inclusion

Vulnerable Configurations

Part Description Count
Application
My-Bic
1

Exploit-Db

descriptionMy-BIC 0.6.5 Mybic_Server.PHP Remote File Include Vulnerability. CVE-2006-5089. Webapps exploit for php platform
idEDB-ID:28686
last seen2016-02-03
modified2006-09-25
published2006-09-25
reporterRoot3r_H3ll
sourcehttps://www.exploit-db.com/download/28686/
titleMy-BIC 0.6.5 - Mybic_Server.PHP Remote File Include Vulnerability