First published: Wed Oct 18 2006(Updated: )
PHP remote file inclusion vulnerability in template/barnraiser_01/p_new_password.tpl.php in AROUNDMe 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the templatePath parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
barnraiser AROUNDMe | <=0.5.2 | |
barnraiser AROUNDMe | =0.5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5401 has a medium severity rating due to its potential for remote code execution.
To fix CVE-2006-5401, upgrade AROUNDMe to version 0.5.2 or later, which addresses the remote file inclusion vulnerability.
CVE-2006-5401 affects users running AROUNDMe version 0.5.2 and earlier, including version 0.5.1.
CVE-2006-5401 is a remote file inclusion vulnerability that allows the execution of arbitrary PHP code.
Exploitation of CVE-2006-5401 can lead to unauthorized access and control over the affected server.