CVE Vulnerabilities

CVE-2006-3584

Published: Aug 08, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Dynamic variable evaluation vulnerability in index.php in Jetbox CMS 2.1 SR1 allows remote attackers to overwrite configuration variables via URL parameters, which are evaluated as PHP variable variables.

Affected Software

NameVendorStart VersionEnd Version
Jetbox_cmsJetbox2.1 (including)2.1 (including)
Jetbox_cmsJetbox2.1_sr1 (including)2.1_sr1 (including)

References