CVE-2006-3981: High severity Mambo Mambo Gallery Manager vulnerability
PHP remote file inclusion vulnerability in about.mgm.php in Mambo Gallery Manager (MGM) 0.95r2 and earlier for Mambo 4.5 allows remote attackers to execute arbitrary PHP code via a URL in the mosConfigabsolutepath parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-3981?
CVE-2006-3981 is considered a critical vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2006-3981?
To fix CVE-2006-3981, upgrade Mambo Gallery Manager to version 0.95r3 or later.
What systems are affected by CVE-2006-3981?
CVE-2006-3981 affects Mambo Gallery Manager versions 0.95r2 and earlier running on Mambo version 4.5.
What type of vulnerability is CVE-2006-3981?
CVE-2006-3981 is a remote file inclusion vulnerability that can lead to arbitrary PHP code execution.
Who can exploit CVE-2006-3981?
Remote attackers can exploit CVE-2006-3981 without authentication, making it particularly dangerous.