First published: Mon Dec 18 2006(Updated: )
PHP remote file inclusion vulnerability in includes/act_constants.php in the Activity Games (mx_act) 0.92 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mxbb Activity Games Module | =0.92 | |
=0.92 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6615 is considered a critical security vulnerability due to its potential to allow remote code execution.
To fix CVE-2006-6615, upgrade the mxBB Activity Games module to a version that does not contain this vulnerability.
CVE-2006-6615 allows attackers to execute arbitrary PHP code, posing significant risks to the affected application.
CVE-2006-6615 specifically affects the mxBB Activity Games module version 0.92.
CVE-2006-6615 impacts the mxBB Activity Games module when integrated with the mxBB forum software.