CVE-2006-5281

PHP remote file inclusion vulnerability in naboard_pnr.php in n@board 3.1.9e and earlier allows remote attackers to execute arbitrary PHP code via a URL in the skin parameter.

Score7.5
Access VectorNETWORK
Access ComplexityLOW
AuthenticationNONE
Confidentiality ImpactPARTIAL
Integrity ImpactPARTIAL
Availability ImpactPARTIAL
Published2006-10-13 03:07:00.000-04
Last Modified2017-10-18 09:29:32.000-04

Vulnerable Software List

VendorProductVersions
Navyism N At Board 3.1.9e

References

SourceLink
MISChttp://securitydot.net/txt/id/1645/type/xpl/
BID20462
VUPENADV-2006-4013
XFn@board-naboard-file-include(29431)
EXPLOIT-DB2514