PHP remote file inclusion vulnerability in phpRaid 3.0.6 allows remote attackers to execute arbitrary code via a URL in the phpraid_dir parameter to (1) announcements.php and (2) rss.php, a different set of vectors and affected versions than CVE-2006-3316 and CVE-2006-3116.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Phpraid | Spiffyjr | 3.0.6 (including) | 3.0.6 (including) |