Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-1623

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2006-1623
Last Modified 05 Sep 2008 05:02:24
Published 05 Apr 2006 06:04:00
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2006-1623

Summary

Unspecified vulnerability in main.php in an unspecified "file created by Andries Bruinsma," possibly a FleXiBle Development (FXB) application, allows remote attackers to include and execute arbitrary PHP code. NOTE: this disclosure is extremely vague and has very little information about the specific vulnerability type. In addition, there is little public information on the named product. Finally, an XSS vector is implied in the subject line, but because there is no other information and evidence of a cut-and-paste error, it will not be assigned a separate CVE identifier unless additional information is provided.

Vulnerable Systems

Application

  • Andries Bruinsma Flexible Development


References

XF - flexible-development-main-xss(25603)

XF - flexible-development-main-command-execution(25600)

BUGTRAQ - 20060405 Re: FleXiBle Development Script Remote Command Exucetion And XSS Attacking

BUGTRAQ - 20060401 FleXiBle Development Script Remote Command Exucetion And XSS Attacking

VIM - 20060404 FleXiBle Development Script Remote Command Exucetion And XSS Attacking


Last Updated: 27 May 2016 10:42:09