First published: Wed Sep 27 2006(Updated: )
Multiple PHP remote file inclusion vulnerabilities in the Joomlaboard Forum Component (com_joomlaboard) before 1.1.2 for Joomla! allow remote attackers to execute arbitrary PHP code via a URL in the sbp parameter to (1) file_upload.php or (2) image_upload.php, a variant of CVE-2006-3528.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
Joomlaboard | <=1.1.1 | |
Joomla | ||
Joomlaboard | <=1.1.1 | |
Joomla |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5043 is classified as a high severity vulnerability due to its potential to allow remote code execution.
To fix CVE-2006-5043, upgrade the Joomlaboard Forum Component to version 1.1.2 or later.
CVE-2006-5043 affects the Joomlaboard Forum Component versions prior to 1.1.2.
Yes, CVE-2006-5043 can be exploited remotely through malicious URLs in specific parameters.
CVE-2006-5043 allows attackers to execute arbitrary PHP code on the affected system.