CVE-2006-5306 Information
Feb 14, 2021
cve
Description
Multiple PHP remote file inclusion vulnerabilities in the Journals System module 1.0.2 (RC2) and earlier for phpBB allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter in (1) includes/journals_delete.php (2) includes/journals_post.php or (3) includes/journals_edit.php.
Reference
http://secunia.com/advisories/22387 http://securityreason.com/securityalert/1731 http://securitytracker.com/id?1017058 http://www.securityfocus.com/archive/1/448443/100/0/threaded http://www.securityfocus.com/bid/20484 http://www.vupen.com/english/advisories/2006/4029 https://exchange.xforce.ibmcloud.com/vulnerabilities/29491 https://www.exploit-db.com/exploits/2522
Share on: