First published: Tue Apr 04 2006(Updated: )
Unspecified vulnerability in the banner module in Exponent CMS before 0.96.5 RC 1 allows "php injection" via unknown attack vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Oicgroup Exponent Cms | =0.94 | |
Oicgroup Exponent Cms | =0.95 | |
Oicgroup Exponent Cms | =0.96.1 | |
Oicgroup Exponent Cms | =0.96.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2006-1607 is classified as medium due to the potential for PHP injection exploits.
To fix CVE-2006-1607, upgrade Exponent CMS to version 0.96.5 RC 1 or later.
CVE-2006-1607 affects Exponent CMS versions 0.94, 0.95, 0.96.1, and 0.96.4.
CVE-2006-1607 allows unspecified PHP injection attacks through the banner module of Exponent CMS.
There may be various exploits leveraging CVE-2006-1607 due to its PHP injection nature, although specific exploit details are not publicly listed.