CVE Vulnerabilities

CVE-2006-1576

Published: Apr 02, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Direct static code injection vulnerability in QLnews 1.2 allows remote authenticated administrators to execute arbitrary PHP code by modifying config.php.

Affected Software

Name Vendor Start Version End Version
Qlnews Vscripts.pl 1.2 (including) 1.2 (including)

References