Multiple PHP remote file inclusion vulnerabilities in Open Conference Systems (OCS) before 1.1.6 allow remote attackers to execute arbitrary PHP code via a URL in the fullpath parameter in (1) include/theme.inc.php or (2) include/footer.inc.php.
References
Configurations
History
No history.
Information
Published : 2006-10-17 15:07
Updated : 2024-02-04 17:13
NVD link : CVE-2006-5308
Mitre link : CVE-2006-5308
CVE.ORG link : CVE-2006-5308
JSON object : View
Products Affected
open_conference_systems
- open_conference_systems
CWE