CVE-2006-0940

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/03/2006
Last modified:
18/10/2018

Description

Multiple direct static code injection vulnerabilities in savesettings.php in ShoutLIVE 1.1.0 allow remote attackers to execute arbitrary PHP code via variables that are written to settings.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cynical_games:shoutlive:1.1.0:*:*:*:*:*:*:*