CVE Vulnerabilities

CVE-2006-4420

Published: Aug 28, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in include_lang.php in Phaos 0.9.2 allows remote attackers to include arbitrary local files via .. sequences in the lang parameter.

Affected Software

NameVendorStart VersionEnd Version
PhaosPhaos0.9 (including)0.9 (including)
PhaosPhaos0.9.1 (including)0.9.1 (including)
PhaosPhaos0.9.2 (including)0.9.2 (including)

References