CVE Vulnerabilities

CVE-2006-3584

Published: Aug 08, 2006 | Modified: Oct 18, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Dynamic variable evaluation vulnerability in index.php in Jetbox CMS 2.1 SR1 allows remote attackers to overwrite configuration variables via URL parameters, which are evaluated as PHP variable variables.

Affected Software

Name Vendor Start Version End Version
Jetbox_cms Jetbox 2.1 (including) 2.1 (including)
Jetbox_cms Jetbox 2.1_sr1 (including) 2.1_sr1 (including)

References