CVE Vulnerabilities

CVE-2006-1662

Published: Apr 07, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The frontpage option in Limbo CMS 1.0.4.2 and 1.0.4.1 allows remote attackers to execute arbitrary PHP commands via the Itemid parameter in index.php.

Affected Software

Name Vendor Start Version End Version
Limbo_cms Limbo_cms 1.0.4.1 (including) 1.0.4.1 (including)
Limbo_cms Limbo_cms 1.0.4.2 (including) 1.0.4.2 (including)

References