CVE-2006-3323

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
30/06/2006
Last modified:
18/10/2018

Description

PHP remote file inclusion vulnerability in admin/admin.php in MF Piadas 1.0 allows remote attackers to execute arbitrary PHP code via the page parameter. NOTE: the same vector can be used for cross-site scripting, but CVE analysis suggests that this is resultant from file inclusion of HTML or script.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mastersfusion:mf_piadas:1.0:*:*:*:*:*:*:*