Lucene search

K
nvd[email protected]NVD:CVE-2006-5796
HistoryNov 08, 2006 - 8:07 p.m.

CVE-2006-5796

2006-11-0820:07:00
web.nvd.nist.gov
2

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.7

Confidence

High

EPSS

0.152

Percentile

95.9%

Multiple PHP remote file inclusion vulnerabilities in Soholaunch Pro Edition 4.9 r46 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the _SESSION[docroot_path] parameter to (1) includes/shared_functions.php or (2) client_files/shopping_cart/pgm-shopping_css.inc.php.

Affected configurations

Nvd
Node
soholaunchsoholaunch_pro_editionMatch4.9_r36
VendorProductVersionCPE
soholaunchsoholaunch_pro_edition4.9_r36cpe:2.3:a:soholaunch:soholaunch_pro_edition:4.9_r36:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.7

Confidence

High

EPSS

0.152

Percentile

95.9%

Related for NVD:CVE-2006-5796