CVE-2006-5401: High severity AROUNDMe AROUNDMe vulnerability
Published Oct 18, 2006
·Updated
PHP remote file inclusion vulnerability in template/barnraiser01/pnewpassword.tpl.php in AROUNDMe 0.5.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the templatePath parameter.
Affected Software
2 affected components
AROUNDMe AROUNDMe<=0.5.2
AROUNDMe AROUNDMe=0.5.1
Event History
Oct 18, 2006
CVE Published
11:07 PM
Data Sourced
via NVD·11:07 PM
DescriptionSeverityAffected Software
Oct 19, 2006
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-5401?
CVE-2006-5401 has a medium severity rating due to its potential for remote code execution.
2
How do I fix CVE-2006-5401?
To fix CVE-2006-5401, upgrade AROUNDMe to version 0.5.2 or later, which addresses the remote file inclusion vulnerability.
3
Who is affected by CVE-2006-5401?
CVE-2006-5401 affects users running AROUNDMe version 0.5.2 and earlier, including version 0.5.1.
4
What type of vulnerability is CVE-2006-5401?
CVE-2006-5401 is a remote file inclusion vulnerability that allows the execution of arbitrary PHP code.
5
What are the implications of CVE-2006-5401?
Exploitation of CVE-2006-5401 can lead to unauthorized access and control over the affected server.