Lucene search

K
cveMitreCVE-2006-5401
HistoryOct 18, 2006 - 11:07 p.m.

CVE-2006-5401

2006-10-1823:07:00
mitre
web.nvd.nist.gov
26
cve-2006-5401
php
remote file inclusion
vulnerability
aroundme 0.5.2
url
templatepath
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

High

EPSS

0.051

Percentile

93.0%

PHP remote file inclusion vulnerability in template/barnraiser_01/p_new_password.tpl.php in AROUNDMe 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the templatePath parameter.

Affected configurations

Nvd
Node
aroundmearoundmeRange0.5.2
OR
aroundmearoundmeMatch0.5.1
VendorProductVersionCPE
aroundmearoundme*cpe:2.3:a:aroundme:aroundme:*:*:*:*:*:*:*:*
aroundmearoundme0.5.1cpe:2.3:a:aroundme:aroundme:0.5.1:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.5

Confidence

High

EPSS

0.051

Percentile

93.0%

Related for CVE-2006-5401