CVE-2006-5918 Information

Description

Unrestricted file upload vulnerability in RapidKill (aka PHP Rapid Kill) 5.7 Pro and certain other versions allows remote attackers to upload and execute arbitrary PHP scripts via the \Link to Download\ field. NOTE: it is possible that the field value is restricted to files on specific public web sites.

Reference

http://securityreason.com/securityalert/1862 http://www.securityfocus.com/archive/1/450681/100/0/threaded http://www.securityfocus.com/bid/20896

Share on: