Multiple PHP remote file inclusion vulnerabilities in Simple Discussion Board 0.1.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) env_dir parameter to (a) blank.php, (b) admin.php, or (c) builddb.php, and the (2) script_root parameter to blank.php.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2006-09-20 18:07
Updated : 2017-10-18 18:29
NVD link : CVE-2006-4918
Mitre link : CVE-2006-4918
JSON object : View
CWE
Products Affected
simple_discussion_board
- simple_discussion_board


