CVE-2006-5043: Code Injection
Published Sep 27, 2006
·Updated
Multiple PHP remote file inclusion vulnerabilities in the Joomlaboard Forum Component (comjoomlaboard) before 1.1.2 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the sbp parameter to (1) fileupload.php or (2) imageupload.php, a variant of CVE-2006-3528.
Affected Software
4 affected components
Joomlaboard Joomlaboard<=1.1.1
Joomla Joomla\!
All of the following
Joomlaboard Joomlaboard<=1.1.1
Joomla Joomla\!
Remediation
Patch Available
Event History
Sep 27, 2006
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Data Sourced
11:07 PM
DescriptionWeaknessAffected Software
Data Sourced
via NVD·11:07 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5043?
CVE-2006-5043 is classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2006-5043?
To fix CVE-2006-5043, upgrade the Joomlaboard Forum Component to version 1.1.2 or later.
3
What components are affected by CVE-2006-5043?
CVE-2006-5043 affects the Joomlaboard Forum Component versions prior to 1.1.2.
4
Can CVE-2006-5043 be exploited remotely?
Yes, CVE-2006-5043 can be exploited remotely through malicious URLs in specific parameters.
5
What kind of impact does CVE-2006-5043 have?
CVE-2006-5043 allows attackers to execute arbitrary PHP code on the affected system.