CVE-2006-2960: High severity joomla joomla vulnerability
Published Jun 12, 2006
·Updated
PHP remote file inclusion vulnerability in includes/joomla.php in Joomla! 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the includepath parameter.
Affected Software
1 affected component
Joomla joomla=1.0
Event History
Jun 12, 2006
CVE Published
08:06 PM
Jun 13, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-2960?
CVE-2006-2960 is considered a critical vulnerability due to its potential for remote code execution.
2
How do I fix CVE-2006-2960?
To fix CVE-2006-2960, update your Joomla! installation to a version that is not affected by this vulnerability.
3
What does CVE-2006-2960 exploit?
CVE-2006-2960 exploits a remote file inclusion vulnerability in Joomla! 1.0 via the includepath parameter.
4
Who is affected by CVE-2006-2960?
Users of Joomla! version 1.0 are affected by CVE-2006-2960 and should take action to mitigate the risk.
5
What are the potential impacts of CVE-2006-2960?
The potential impacts of CVE-2006-2960 include unauthorized remote code execution and complete server compromise.