CVE-2006-0940 Information

Description

Multiple direct static code injection vulnerabilities in savesettings.php in ShoutLIVE 1.1.0 allow remote attackers to execute arbitrary PHP code via variables that are written to settings.php.

Reference

http://evuln.com/vulns/87/summary.html http://secunia.com/advisories/19047 http://securityreason.com/securityalert/557 http://www.osvdb.org/23482 http://www.securityfocus.com/archive/1/426985/100/0/threaded http://www.securityfocus.com/bid/16857 http://www.vupen.com/english/advisories/2006/0755 https://exchange.xforce.ibmcloud.com/vulnerabilities/24897

Share on: