CVE-2006-5092: High severity A-Blog A-Blog vulnerability
Published Sep 29, 2006
·Updated
PHP remote file inclusion vulnerability in navigation/menu.php in A-Blog 2 allows remote attackers to execute arbitrary PHP code via a URL in the navigationstart parameter.
Affected Software
1 affected component
A-Blog A-Blog=2
Event History
Sep 29, 2006
CVE Published
08:07 PM
Data Sourced
via NVD·08:07 PM
DescriptionSeverityAffected Software
Sep 30, 2006
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-5092?
CVE-2006-5092 is considered a critical vulnerability as it allows remote attackers to execute arbitrary PHP code.
2
How do I fix CVE-2006-5092?
To fix CVE-2006-5092, update A-Blog CMS to the latest version that addresses the vulnerability.
3
What software is affected by CVE-2006-5092?
CVE-2006-5092 affects A-Blog version 2 specifically.
4
Can CVE-2006-5092 be exploited remotely?
Yes, CVE-2006-5092 can be exploited remotely due to improper handling of user input.
5
What type of vulnerability is CVE-2006-5092?
CVE-2006-5092 is a remote file inclusion vulnerability.