CVE-2006-7100: Code Injection
Published Mar 3, 2007
·Updated
PHP remote file inclusion vulnerability in includes/functionsmoduser.php in phpBB Insert User 0.1.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbbrootpath parameter.
Affected Software
1 affected component
phpBB Insert User<=0.1.2
Event History
Mar 3, 2007
CVE Published
09:19 PM
Mar 4, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-7100?
CVE-2006-7100 is classified as a critical vulnerability due to its ability to allow remote code execution.
2
How do I fix CVE-2006-7100?
To fix CVE-2006-7100, you should upgrade to a newer version of phpBB Insert User beyond 0.1.2.
3
What are the potential impacts of CVE-2006-7100?
The potential impacts of CVE-2006-7100 include unauthorized access and execution of malicious PHP code on the server.
4
Who is affected by CVE-2006-7100?
CVE-2006-7100 affects users of phpBB Insert User version 0.1.2 and earlier.
5
What types of attacks can CVE-2006-7100 facilitate?
CVE-2006-7100 can facilitate remote file inclusion attacks, allowing attackers to execute arbitrary code.