Vulnerabilities > CVE-2006-5637 - Remote File Include vulnerability in FAQ Administrator FAQ Administrator 2.1B

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
faq-administrator
exploit available

Summary

PHP remote file inclusion vulnerability in faq_reply.php in Faq Administrator 2.1b allows remote attackers to execute arbitrary PHP code via a URL in the email parameter. This vulnerability is addressed in the following product release: FAQ Administrator, FAQ Administrator, 3.0

Vulnerable Configurations

Part Description Count
Application
Faq_Administrator
1

Exploit-Db

descriptionFaq Administrator 2.1 (faq_reply.php) Remote File Include Vulnerability. CVE-2006-5637. Webapps exploit for php platform
fileexploits/php/webapps/2678.txt
idEDB-ID:2678
last seen2016-01-31
modified2006-10-29
platformphp
port
published2006-10-29
reporterv1per-haCker
sourcehttps://www.exploit-db.com/download/2678/
titleFaq Administrator 2.1 faq_reply.php Remote File Include Vulnerability
typewebapps