First published: Fri Mar 10 2006(Updated: )
PHP remote file inclusion vulnerability in index.php in M-Phorum 0.2 allows remote attackers to include arbitrary files via the go parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Phorum | =0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1152 is considered a medium severity vulnerability due to its potential for remote file inclusion.
To fix CVE-2006-1152, update the M-Phorum software to a version that has patched this vulnerability.
CVE-2006-1152 affects M-Phorum version 0.2.
CVE-2006-1152 is a remote file inclusion vulnerability that allows attackers to include arbitrary files via the go parameter.
Yes, CVE-2006-1152 can be exploited remotely due to its nature of allowing remote file inclusion.