cvelist/2006/5xxx/CVE-2006-5911.json

283 lines
8.8 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2006-5911",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute arbitrary PHP code via a URL in the g_documentRoot parameter to (1) Alias.php, (2) Article.php, (3) ArticleAttachment.php, (4) ArticleComment.php, (5) ArticleData.php, (6) ArticleImage.php, (7) ArticleIndex.php, (8) ArticlePublish.php, (9) ArticleTopic.php, (10) ArticleType.php, (11) ArticleTypeField.php, (12) Attachment.php, (13) Country.php, (14) DatabaseObject.php, (15) Event.php, (16) IPAccess.php, (17) Image.php, (18) Issue.php, (19) IssuePublish.php, (20) Language.php, (21) Log.php, (22) LoginAttempts.php, (23) Publication.php, (24) Section.php, (25) ShortURL.php, (26) Subscription.php, (27) SubscriptionDefaultTime.php, (28) SubscriptionSection.php, (29) SystemPref.php, (30) Template.php, (31) TimeUnit.php, (32) Topic.php, (33) UrlType.php, (34) User.php, and (35) UserType.php in implementation/management/classes/; (36) configuration.php and (37) db_connect.php in implementation/management/; and (38) LocalizerConfig.php and (39) LocalizerLanguage.php in implementation/management/priv/localizer/."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "http://code.campware.org/projects/campsite/changeset/6057",
"refsource" : "CONFIRM",
"url" : "http://code.campware.org/projects/campsite/changeset/6057"
},
{
"name" : "http://code.campware.org/projects/campsite/changeset/6058",
"refsource" : "CONFIRM",
"url" : "http://code.campware.org/projects/campsite/changeset/6058"
},
{
"name" : "http://code.campware.org/projects/campsite/query?milestone=2.6.2",
"refsource" : "CONFIRM",
"url" : "http://code.campware.org/projects/campsite/query?milestone=2.6.2"
},
{
"name" : "http://code.campware.org/projects/campsite/ticket/2349",
"refsource" : "CONFIRM",
"url" : "http://code.campware.org/projects/campsite/ticket/2349"
},
{
"name" : "http://sourceforge.net/project/shownotes.php?release_id=459574&group_id=66936",
"refsource" : "CONFIRM",
"url" : "http://sourceforge.net/project/shownotes.php?release_id=459574&group_id=66936"
},
{
"name" : "23874",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/23874"
},
{
"name" : "34188",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34188"
},
{
"name" : "34199",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34199"
},
{
"name" : "34206",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34206"
},
{
"name" : "34207",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34207"
},
{
"name" : "34222",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34222"
},
{
"name" : "34223",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34223"
},
{
"name" : "34187",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34187"
},
{
"name" : "34189",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34189"
},
{
"name" : "34190",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34190"
},
{
"name" : "34191",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34191"
},
{
"name" : "34192",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34192"
},
{
"name" : "34193",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34193"
},
{
"name" : "34194",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34194"
},
{
"name" : "34195",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34195"
},
{
"name" : "34196",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34196"
},
{
"name" : "34197",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34197"
},
{
"name" : "34198",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34198"
},
{
"name" : "34200",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34200"
},
{
"name" : "34201",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34201"
},
{
"name" : "34202",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34202"
},
{
"name" : "34203",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34203"
},
{
"name" : "34204",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34204"
},
{
"name" : "34205",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34205"
},
{
"name" : "34208",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34208"
},
{
"name" : "34209",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34209"
},
{
"name" : "34210",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34210"
},
{
"name" : "34211",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34211"
},
{
"name" : "34212",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34212"
},
{
"name" : "34213",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34213"
},
{
"name" : "34214",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34214"
},
{
"name" : "34215",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34215"
},
{
"name" : "34216",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34216"
},
{
"name" : "34217",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34217"
},
{
"name" : "34218",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34218"
},
{
"name" : "34219",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34219"
},
{
"name" : "34220",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34220"
},
{
"name" : "34221",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34221"
},
{
"name" : "34224",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34224"
},
{
"name" : "34225",
"refsource" : "OSVDB",
"url" : "http://www.osvdb.org/34225"
}
]
}
}