CVE-2006-7124: High severity Joomla BSQ Sitestats vulnerability
Published Mar 6, 2007
·Updated
PHP remote file inclusion vulnerability in external/rssfeeds.php in BSQ Sitestats (component for Joomla) 1.8.0, and possibly other versions before 2.2.1, allows remote attackers to execute arbitrary PHP code via the baseDir parameter.
Affected Software
1 affected component
Joomla BSQ Sitestats=1.8.0
Remediation
Patch Available
Patch Available
Patch Available
Event History
Mar 6, 2007
CVE Published
01:19 AM
CVE Published
via MITRE·06:00 AM
Data Sourced
via MITRE·06:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-7124?
CVE-2006-7124 has a critical severity level due to potential remote code execution.
2
How do I fix CVE-2006-7124?
To mitigate CVE-2006-7124, upgrade to BSQ Sitestats version 2.2.1 or later.
3
What software is affected by CVE-2006-7124?
CVE-2006-7124 affects BSQ Sitestats version 1.8.0 and possibly earlier versions.
4
What kind of attack can exploit CVE-2006-7124?
CVE-2006-7124 can be exploited through remote file inclusion attacks allowing arbitrary PHP code execution.
5
Is CVE-2006-7124 a common vulnerability?
CVE-2006-7124 is known to affect Joomla users utilizing the BSQ Sitestats component, making it a notable concern.