Multiple PHP remote file inclusion vulnerabilities in Exhibit Engine (EE) 1.22, and possibly earlier, allow remote attackers to execute arbitrary PHP code via a URL in the toroot parameter to (1) fetchsettings.php or (2) fstyles.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
References
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-03-30T21:00:00Z

Updated: 2024-09-16T19:36:27.344Z

Reserved: 2007-03-30T00:00:00Z

Link: CVE-2006-7184

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2007-03-30T21:19:00.000

Modified: 2008-09-05T21:16:38.200

Link: CVE-2006-7184

cve-icon Redhat

No data.