CVE Vulnerabilities

CVE-2006-2982

Published: Jun 13, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Multiple PHP remote file inclusion vulnerabilities in Enterprise Timesheet and Payroll Systems (EPS) 1.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the absolutepath parameter in (1) footer.php and (2) admin/footer.php.

Affected Software

NameVendorStart VersionEnd Version
Enterprise_payroll_systemsEnterprise_payroll_systems1.0_alpha (including)1.0_alpha (including)
Enterprise_payroll_systemsEnterprise_payroll_systems1.1 (including)1.1 (including)
Enterprise_payroll_systemsEnterprise_payroll_systems1.01_alpha (including)1.01_alpha (including)

References