CVE-2006-3998 Information
Feb 14, 2021
cve
Description
PHP remote file inclusion vulnerability in conf.php in WoWRoster (aka World of Warcraft Roster) 1.5.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the subdir parameter.
Reference
http://www.securityfocus.com/bid/19269 http://www.vupen.com/english/advisories/2006/3094 http://www.wowroster.net/Forums/viewtopic/t=333.html https://exchange.xforce.ibmcloud.com/vulnerabilities/28101 https://www.exploit-db.com/exploits/2099
Share on: