Show filters
16 Total Results
Displaying 1-10 of 16
Sort by:
Attacker Value
Unknown
CVE-2007-5178
Disclosure Date: October 03, 2007 (last updated October 04, 2023)
contrib/mx_glance_sdesc.php in the mx_glance 2.3.3 module for mxBB places a critical security check within a comment because of a missing comment delimiter, which allows remote attackers to conduct remote file inclusion attacks and execute arbitrary PHP code via a URL in the mx_root_path parameter. NOTE: some sources incorrectly state that phpbb_root_path is the affected parameter.
0
Attacker Value
Unknown
CVE-2007-2493
Disclosure Date: May 04, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in faq.php in the FAQ & RULES 2.0.0 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0
Attacker Value
Unknown
CVE-2007-2313
Disclosure Date: April 26, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in getinfo1.php in the Shotcast 1.0 RC2 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the mx_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6644
Disclosure Date: December 20, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in pages/meeting_constants.php in the Meeting (mx_meeting) 1.1.2 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6645
Disclosure Date: December 20, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in language/lang_english/lang_admin.php in the Web Links (mx_links) 2.05 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the mx_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6650
Disclosure Date: December 20, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in charts_constants.php in the Charts (mx_charts) 1.0.0 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6615
Disclosure Date: December 18, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/act_constants.php in the Activity Games (mx_act) 0.92 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6567
Disclosure Date: December 15, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0
Attacker Value
Unknown
CVE-2006-6568
Disclosure Date: December 15, 2006 (last updated October 04, 2023)
Directory traversal vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the phpEx parameter.
0
Attacker Value
Unknown
CVE-2006-6566
Disclosure Date: December 15, 2006 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in includes/profilcp_constants.php in the Profile Control Panel (CPanel) module for mxBB 0.91c allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
0