Vulnerabilities > CVE-2006-5252 - Remote File Include vulnerability in Webmedia Explorer Webmedia Explorer 2.8.7

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
webmedia-explorer

Summary

PHP remote file inclusion vulnerability in includes/core.lib.php in Webmedia Explorer 2.8.7 allows remote attackers to execute arbitrary PHP code via a URL in the path_include parameter. Successful exploitation requires that the application is incorrectly configured. To resolve, activate mod_rewrite and ensure that your web server processes the ".htaccess" file correctly.

Vulnerable Configurations

Part Description Count
Application
Webmedia_Explorer
1