CVE-2006-2150: Medium severity Phpbb Group Phpbb Toplist vulnerability
Published May 3, 2006
·Updated
PHP remote file inclusion vulnerability in top/list.php in phpBB TopList 1.3.8 and earlier allows remote attackers to include arbitrary files via the returnpath parameter.
Affected Software
1 affected component
Phpbb Group Phpbb Toplist=1.3.8
Event History
May 3, 2006
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2150?
CVE-2006-2150 is classified as a high-severity vulnerability due to its potential for remote file inclusion.
2
How do I fix CVE-2006-2150?
To mitigate CVE-2006-2150, upgrade to phpBB TopList version 1.3.9 or later which addresses this vulnerability.
3
What types of attacks can be executed through CVE-2006-2150?
CVE-2006-2150 allows attackers to include arbitrary files from remote locations, potentially leading to code execution.
4
Which versions are affected by CVE-2006-2150?
CVE-2006-2150 affects phpBB TopList version 1.3.8 and earlier.
5
Is CVE-2006-2150 applicable to other software besides phpBB TopList?
CVE-2006-2150 is specific to phpBB TopList and does not apply to other phpBB versions or software.