CVE-2006-2361 Information

Description

PHP remote file inclusion vulnerability in pafiledb_constants.php in Download Manager (mxBB pafiledb) integration as used with phpBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.

Reference

http://secunia.com/advisories/20062 http://www.osvdb.org/25507 http://www.securityfocus.com/bid/17930 http://www.vupen.com/english/advisories/2006/1776 https://exchange.xforce.ibmcloud.com/vulnerabilities/26496 https://www.exploit-db.com/exploits/1774

Share on: