CVE-2006-6593: High severity phpbb amazonia mod vulnerability
Published Dec 15, 2006
·Updated
PHP remote file inclusion vulnerability in zufallscodepart.php in AMAZONIA MOD for phpBB allows remote attackers to execute arbitrary PHP code via a URL in the phpbbrootpath parameter.
Affected Software
1 affected component
phpBB AMAZONIA MOD
Event History
Dec 15, 2006
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:28 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2006-6593?
CVE-2006-6593 is considered to have a critical severity as it allows remote code execution via PHP remote file inclusion.
2
How do I fix CVE-2006-6593?
To fix CVE-2006-6593, update the Amazonia MOD for phpBB to a patched version that sanitizes the phpbb_root_path parameter.
3
What systems are affected by CVE-2006-6593?
CVE-2006-6593 affects installations of the Amazonia MOD for phpBB that are vulnerable to remote file inclusion.
4
What type of vulnerability is CVE-2006-6593?
CVE-2006-6593 is classified as a Remote File Inclusion (RFI) vulnerability.
5
Who can exploit CVE-2006-6593?
CVE-2006-6593 can be exploited by attackers with remote access to the application, allowing them to execute arbitrary PHP code.