CVE-2006-1013: High severity SMartBlog SMartBlog vulnerability
Published Mar 7, 2006
·Updated
PHP remote file include vulnerability in index.php in SMartBlog (aka SMBlog) 1.2 allows remote attackers to include and execute arbitrary PHP files via (1) the pg parameter and (2) a query string without a parameter.
Affected Software
1 affected component
SMartBlog SMartBlog=1.2
Event History
Mar 7, 2006
CVE Published
12:02 AM
CVE Published
via MITRE·05:00 AM
Data Sourced
via MITRE·05:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1013?
CVE-2006-1013 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2006-1013?
To fix CVE-2006-1013, it is recommended to upgrade SMartBlog to the latest version that addresses this vulnerability.
3
What type of vulnerability is CVE-2006-1013?
CVE-2006-1013 is a remote file inclusion vulnerability in the SMartBlog application.
4
Which versions of SMartBlog are affected by CVE-2006-1013?
SMartBlog version 1.2 is specifically vulnerable to CVE-2006-1013.
5
What can an attacker do with CVE-2006-1013?
An attacker exploiting CVE-2006-1013 can include and execute arbitrary PHP files on the server.