** DISPUTED ** PHP remote file inclusion vulnerability in lib/php/phphtmllib-2.5.4/examples/example6.php for maintain 3.0.0-RC2 allows remote attackers to execute arbitrary PHP code via a URL in the phphtmllib parameter. NOTE: this issue might be in phpHtmlLib. NOTE: CVE disputes this issue for proper installations of maintain, since $phphtmllib is set in includes.inc before being used in example6.php.
References
Configurations
History
21 Nov 2024, 00:24
Type | Values Removed | Values Added |
---|---|---|
References | () http://securityreason.com/securityalert/2359 - | |
References | () http://www.securityfocus.com/archive/1/448780/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/20560 - Exploit | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/29596 - |
Information
Published : 2007-03-06 01:19
Updated : 2025-04-09 00:30
NVD link : CVE-2006-7120
Mitre link : CVE-2006-7120
CVE.ORG link : CVE-2006-7120
JSON object : View
Products Affected
osu_open_source_lab
- maintain
CWE