CVE-2006-4649

PHP remote file inclusion vulnerability in bp_news.php in BinGo News (BP News) 3.01 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the bnrep parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bingo_news:bingo_news:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-09-08 21:04

Updated : 2024-02-04 16:52


NVD link : CVE-2006-4649

Mitre link : CVE-2006-4649

CVE.ORG link : CVE-2006-4649


JSON object : View

Products Affected

bingo_news

  • bingo_news
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')