CVE Vulnerabilities

CVE-2006-2098

Published: Apr 29, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

PHP remote file inclusion vulnerability in Thumbnail AutoIndex before 2.0 allows remote attackers to execute arbitrary PHP code via (1) README.html or (2) HEADER.html.

Affected Software

NameVendorStart VersionEnd Version
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.0 (including)1.0 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.1 (including)1.1 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.2 (including)1.2 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.2.1 (including)1.2.1 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.2.2 (including)1.2.2 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.2.3 (including)1.2.3 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.2.4 (including)1.2.4 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.3 (including)1.3 (including)
Php_thumbnail_autoindexPhp_thumbnail_autoindex1.4 (including)1.4 (including)

References