CVE-2006-5241

Multiple PHP remote file inclusion vulnerabilities in OpenDock Easy Gallery 1.4 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the doc_directory parameter in (1) file.php; (2) find_user.php, (3) lib_user.php, (4) lib_form_user.php, and (5) user.php in sw/lib_user/; (6) find_session.php and (7) session.php in sw/lib_session/; (8) comment.php and (9) lib_comment.php in sw/lib_comment/; and other unspecified PHP scripts.

Score5.1
Access VectorNETWORK
Access ComplexityHIGH
AuthenticationNONE
Confidentiality ImpactPARTIAL
Integrity ImpactPARTIAL
Availability ImpactPARTIAL
Published2006-10-11 08:07:00.000-04
Last Modified2018-10-17 05:41:51.000-04

Vulnerable Software List

VendorProductVersions
Opendock Easy Gallery 1.4

References

SourceLink
MISChttp://advisories.echo.or.id/adv/adv52-theday-2006.txt
SREASON1708
SECTRACK1017021
BUGTRAQ20061009 [ECHO_ADV_52$2006]OpenDock Easy Gallery <=1.4 (doc_directory) Multiple Remote File Inclusion Vulnerability
BID20411
VUPENADV-2006-3969
XFopendock-gallery-docdirectory-file-include(29417)
EXPLOIT-DB2497