CVE-2006-5919: High severity ActiveCampaign KnowledgeBuilder vulnerability
Published Nov 15, 2006
·Updated
PHP remote file inclusion vulnerability in admin/edata/visEditcontrol.class.php in ActiveCampaign KnowledgeBuilder 2.2 allows remote attackers to execute arbitrary PHP code via a URL in the visEditroot parameter, a different vector than CVE-2003-1131.
Affected Software
1 affected component
ActiveCampaign KnowledgeBuilder=2.2
Event History
Nov 15, 2006
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Data Sourced
via NVD·03:07 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-5919?
CVE-2006-5919 has a medium severity level as it allows remote execution of PHP code.
2
How do I fix CVE-2006-5919?
To fix CVE-2006-5919, update to a newer version of ActiveCampaign KnowledgeBuilder that addresses this vulnerability.
3
What systems are affected by CVE-2006-5919?
CVE-2006-5919 specifically affects ActiveCampaign KnowledgeBuilder version 2.2.
4
What type of vulnerability is CVE-2006-5919?
CVE-2006-5919 is categorized as a remote file inclusion vulnerability.
5
Can CVE-2006-5919 lead to data breaches?
Yes, CVE-2006-5919 can potentially lead to data breaches by allowing attackers to execute arbitrary PHP code.