First published: Wed Aug 23 2006(Updated: )
PHP remote file inclusion vulnerability in classes/Tar.php in bigAPE-Backup component (com_babackup) for Mambo 1.1 allows remote attackers to include arbitrary files via the mosConfig_absolute_path parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mambo Bigape-backup Component |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4296 is classified as a high severity vulnerability due to its ability to allow remote file inclusion.
To fix CVE-2006-4296, update to a patched version of the Mambo bigAPE-Backup component that addresses this issue.
CVE-2006-4296 affects Mambo 1.1 with the bigAPE-Backup component installed.
CVE-2006-4296 is a remote file inclusion vulnerability that allows attackers to include arbitrary files.
Exploitation of CVE-2006-4296 could lead to unauthorized access and execution of malicious scripts on the server.