CVE-2006-2819: High severity barnraiser Igloo vulnerability
Published Jun 5, 2006
·Updated
PHP remote file inclusion vulnerability in Wiki.php in Barnraiser Igloo 0.1.9 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cnode[classpath] parameter.
Affected Software
1 affected component
barnraiser Igloo<=0.1.9
Event History
Jun 5, 2006
CVE Published
05:02 PM
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2819?
CVE-2006-2819 is classified as a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2006-2819?
To fix CVE-2006-2819, upgrade Barnraiser Igloo to version 0.2.0 or later, which addresses this vulnerability.
3
What is affected by CVE-2006-2819?
CVE-2006-2819 affects Barnraiser Igloo versions 0.1.9 and earlier.
4
Can CVE-2006-2819 be exploited remotely?
Yes, CVE-2006-2819 can be exploited remotely by attackers to execute arbitrary PHP code.
5
What parameters are involved in CVE-2006-2819?
The vulnerability in CVE-2006-2819 is triggered through a URL in the c_node[class_path] parameter.