cvelist/2006/5xxx/CVE-2006-5918.json
2018-10-17 17:05:08 -04:00

73 lines
2.0 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2006-5918",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Unrestricted file upload vulnerability in RapidKill (aka PHP Rapid Kill) 5.7 Pro, and certain other versions, allows remote attackers to upload and execute arbitrary PHP scripts via the \"Link to Download\" field. NOTE: it is possible that the field value is restricted to files on specific public web sites."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "20061106 PHP Rapid Kill All Version File Injection",
"refsource" : "BUGTRAQ",
"url" : "http://www.securityfocus.com/archive/1/450681/100/0/threaded"
},
{
"name" : "20896",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/20896"
},
{
"name" : "1862",
"refsource" : "SREASON",
"url" : "http://securityreason.com/securityalert/1862"
}
]
}
}