CVE-2006-2151: High severity Phpbb Group Phpbb Toplist vulnerability
PHP remote file inclusion vulnerability in toplist.php in phpBB TopList 1.3.8 and earlier, when registerglobals is enabled, allows remote attackers to include arbitrary files via the phpbbrootpath parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-2151?
CVE-2006-2151 is considered a high severity vulnerability due to its potential for remote file inclusion and exploitation.
How do I fix CVE-2006-2151?
To mitigate CVE-2006-2151, disable register_globals and upgrade to phpBB TopList version 1.3.9 or later.
What applications are affected by CVE-2006-2151?
CVE-2006-2151 affects phpBB TopList version 1.3.8 and earlier when register_globals is enabled.
What type of vulnerability is CVE-2006-2151?
CVE-2006-2151 is a remote file inclusion vulnerability that allows attackers to include arbitrary files.
What are the consequences of exploiting CVE-2006-2151?
Exploiting CVE-2006-2151 could lead to unauthorized access to files on the server, potentially compromising the web application.