Security Advisory

CVE-2006-3520

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-07-12 00:00:00
Last updated 2024-08-07 18:30:34
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP remote file inclusion vulnerability in skins/advanced/advanced1.php in Sabdrimer Pro 2.2.4, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the pluginpath[0] parameter.