Multiple direct static code injection vulnerabilities in savesettings.php in ShoutLIVE 1.1.0 allow remote attackers to execute arbitrary PHP code via variables that are written to settings.php.
References
Configurations
History
21 Nov 2024, 00:07
Type | Values Removed | Values Added |
---|---|---|
References | () http://evuln.com/vulns/87/summary.html - Vendor Advisory | |
References | () http://secunia.com/advisories/19047 - Vendor Advisory | |
References | () http://securityreason.com/securityalert/557 - | |
References | () http://www.osvdb.org/23482 - | |
References | () http://www.securityfocus.com/archive/1/426985/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/16857 - | |
References | () http://www.vupen.com/english/advisories/2006/0755 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/24897 - |
Information
Published : 2006-03-01 02:02
Updated : 2024-11-21 00:07
NVD link : CVE-2006-0940
Mitre link : CVE-2006-0940
CVE.ORG link : CVE-2006-0940
JSON object : View
Products Affected
cynical_games
- shoutlive
CWE