CVE-2006-4437 Information

Description

Eval injection vulnerability in Tagger LE allows remote attackers to execute arbitrary PHP code via the query string in (1) tags.php (2) sign.php and (3) admin/index.php.

Reference

http://secunia.com/advisories/21449 http://secunia.com/secunia_research/2006-62/advisory/ http://securityreason.com/securityalert/1584 http://www.osvdb.org/28755 http://www.osvdb.org/28756 http://www.osvdb.org/28757 http://www.securityfocus.com/archive/1/446010/100/0/threaded http://www.securityfocus.com/bid/20023 http://www.vupen.com/english/advisories/2006/3606 https://exchange.xforce.ibmcloud.com/vulnerabilities/28941

Share on: