PHP remote file inclusion vulnerability in htmltonuke.php in the htmltonuke 2.0 alpha, and possibly other versions, module for PHP-Nuke allows remote attackers to execute arbitrary PHP code via a URL in the filnavn parameter.
References
Configurations
Information
Published : 2006-01-18 16:03
Updated : 2017-10-10 18:30
NVD link : CVE-2006-0308
Mitre link : CVE-2006-0308
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
htmltonuke
- htmltonuke