PHP remote file inclusion vulnerability in register.php for Andys Chat 4.5 allows remote attackers to execute arbitrary code via the action parameter. NOTE: this issue was announced by an unreliable researcher, but the vendor is no longer distributing the product, so the original claims can not be evaluated.
References
Configurations
History
21 Nov 2024, 00:24
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/2284 - | |
References | () http://www.securityfocus.com/archive/1/437300/30/4350/threaded - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/27187 - |
Information
Published : 2007-02-23 03:28
Updated : 2024-11-21 00:24
NVD link : CVE-2006-7036
Mitre link : CVE-2006-7036
CVE.ORG link : CVE-2006-7036
JSON object : View
Products Affected
andys_chat
- andys_chat
CWE