CVE-2006-5310

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
17/10/2006
Last modified:
17/10/2018

Description

PHP remote file inclusion vulnerability in common/visiteurs/include/menus.inc.php in J-Pierre DEZELUS Les Visiteurs 2.0.1, as used in phpMyConferences (phpMyConference) 8.0.2 and possibly other products, allows remote attackers to execute arbitrary PHP code via a URL in the lvc_include_dir parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:j-pierre_dezelus:les_visiteurs:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:phpmyconferences:phpmyconferences:*:*:*:*:*:*:*:* 8.0.2 (including)