CVE Vulnerabilities

CVE-2006-2507

Published: May 22, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple PHP remote file inclusion vulnerabilities in Teake Nutma Foing 0.2.0 through 0.7.0, as used with phpBB, allow remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter in (1) index.php, (2) song.php, (3) faq.php, (4) list.php, (5) gen_m3u.php, and (6) playlist.php.

Affected Software

NameVendorStart VersionEnd Version
FoingTeake_nutma0.2.0 (including)0.2.0 (including)
FoingTeake_nutma0.3.0 (including)0.3.0 (including)
FoingTeake_nutma0.4.0 (including)0.4.0 (including)
FoingTeake_nutma0.5.0 (including)0.5.0 (including)
FoingTeake_nutma0.6.0 (including)0.6.0 (including)
FoingTeake_nutma0.7.0 (including)0.7.0 (including)

References