RSS   Vulnerabilities for 'Storystream'   RSS

2006-11-14
 
CVE-2006-5893

 

 
Multiple PHP remote file inclusion vulnerabilities in iWonder Designs Storystream 0.4.0.0 allow remote attackers to execute arbitrary PHP code via a URL in the baseDir parameter to (1) mysql.php and (2) mysqli.php in include/classes/pear/DB/.

 


Copyright 2024, cxsecurity.com

 

Back to Top