CVE-2006-7148 Information

Description

PHP remote file inclusion vulnerability in includes/bb_usage_stats.php in maluinfo 206.2.38 for Brazilian PHPBB allows remote attackers to execute arbitrary PHP code via the phpbb_root_path parameter. NOTE: this might be the same issues as CVE-2006-4893.

Reference

http://securityreason.com/securityalert/2380 http://www.securityfocus.com/archive/1/448639/100/0/threaded http://www.securityfocus.com/bid/20507 https://exchange.xforce.ibmcloud.com/vulnerabilities/29516

Share on: