PHP remote file inclusion vulnerability in adodb-postgres7.inc.php in John Lim ADOdb, possibly 4.01 and earlier, as used in Intechnic In-link 2.3.4, allows remote attackers to execute arbitrary PHP code via a URL in the ADODB_DIR parameter.
References
Configurations
History
21 Nov 2024, 00:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://adodb.cvs.sourceforge.net/adodb/adodb_official/adodb-postgres7.inc.php?revision=1.1&view=markup - | |
References | () http://prdownloads.sourceforge.net/adodb/adodb492.tgz?download - Patch | |
References | () http://securityreason.com/securityalert/1517 - | |
References | () http://www.securityfocus.com/archive/1/445259/100/0/threaded - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/28709 - |
Information
Published : 2006-09-07 00:04
Updated : 2025-04-03 01:03
NVD link : CVE-2006-4618
Mitre link : CVE-2006-4618
CVE.ORG link : CVE-2006-4618
JSON object : View
Products Affected
john_lim
- adodb
CWE