PHP remote file inclusion vulnerability in Sonium Enterprise Adressbook 0.2 allows remote attackers to execute arbitrary PHP code via the folder parameter in multiple files in the plugins directory, as demonstrated by plugins/1_Adressbuch/delete.php.
                
            References
                    Configurations
                    History
                    21 Nov 2024, 00:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () http://secunia.com/advisories/21553 - Vendor Advisory | |
| References | () http://www.bb-pcsecurity.de/Websecurity/342/org/Sonium_Enterprise_Adressbook_Version_0.2_%28folder%29_RFI.htm - | |
| References | () http://www.securityfocus.com/archive/1/443701/100/0/threaded - | |
| References | () http://www.securityfocus.com/bid/19597 - | |
| References | () http://www.vupen.com/english/advisories/2006/3334 - | |
| References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/28464 - | 
07 Nov 2023, 01:59
| Type | Values Removed | Values Added | 
|---|---|---|
| References | 
 | 
 | 
Information
                Published : 2006-08-23 19:04
Updated : 2025-04-03 01:03
NVD link : CVE-2006-4311
Mitre link : CVE-2006-4311
CVE.ORG link : CVE-2006-4311
JSON object : View
Products Affected
                sonium
- enterprise_adressbook
CWE
                