CVE-2006-4452

PHP remote file inclusion vulnerability in security/include/_class.security.php in Web3news 0.95 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the PHPSECURITYADMIN_PATH parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:web3king:web3news:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-08-30 16:04

Updated : 2024-02-04 16:52


NVD link : CVE-2006-4452

Mitre link : CVE-2006-4452

CVE.ORG link : CVE-2006-4452


JSON object : View

Products Affected

web3king

  • web3news