CVE-2006-4189

Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.
References
Link Resource
http://secunia.com/advisories/21535 Vendor Advisory
http://securitytracker.com/id?1016692 Exploit
http://www.osvdb.org/28473 Exploit
http://www.osvdb.org/28474 Exploit
http://www.osvdb.org/28478 Exploit
http://www.osvdb.org/28479 Exploit
http://www.osvdb.org/28485 Exploit
http://www.osvdb.org/28492 Exploit
http://www.osvdb.org/28493 Exploit
http://www.osvdb.org/28496 Exploit
http://www.osvdb.org/28498 Exploit
http://www.osvdb.org/28499 Exploit
http://www.osvdb.org/28500 Exploit
http://www.osvdb.org/28501 Exploit
http://www.osvdb.org/28502 Exploit
http://www.osvdb.org/28503 Exploit
http://www.osvdb.org/28504 Exploit
http://www.osvdb.org/28505 Exploit
http://www.osvdb.org/28506 Exploit
http://www.osvdb.org/28507 Exploit
http://www.osvdb.org/28508 Exploit
http://www.osvdb.org/28509 Exploit
http://www.osvdb.org/28510 Exploit
http://www.osvdb.org/28511 Exploit
http://www.osvdb.org/28512 Exploit
http://www.osvdb.org/28513 Exploit
http://www.osvdb.org/28514 Exploit
http://www.osvdb.org/28515 Exploit
http://www.osvdb.org/28516 Exploit
http://www.osvdb.org/28517 Exploit
http://www.osvdb.org/28519 Exploit
http://www.osvdb.org/28520 Exploit
http://www.osvdb.org/28521 Exploit
http://www.osvdb.org/28522 Exploit
http://www.osvdb.org/28523 Exploit
http://www.osvdb.org/28524 Exploit
http://www.osvdb.org/28525 Exploit
http://www.osvdb.org/28526 Exploit
http://www.osvdb.org/28527 Exploit
http://www.osvdb.org/28528 Exploit
http://www.osvdb.org/28529 Exploit
http://www.osvdb.org/28530 Exploit
http://www.securityfocus.com/bid/21182
http://www.vupen.com/english/advisories/2006/3346
https://exchange.xforce.ibmcloud.com/vulnerabilities/28363
Configurations

Configuration 1 (hide)

cpe:2.3:a:boonex:dolphin:5.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-08-17 01:04

Updated : 2024-02-04 16:52


NVD link : CVE-2006-4189

Mitre link : CVE-2006-4189

CVE.ORG link : CVE-2006-4189


JSON object : View

Products Affected

boonex

  • dolphin