Vulnerability CVE-2006-0810


Published: 2006-02-20   Modified: 2012-02-12

Description:
Unspecified vulnerability in config.php in Skate Board 0.9 allows remote authenticated administrators to execute arbitrary PHP code by causing certain variables in config.php to be modified, possibly due to XSS or direct static code injection.

See advisories in our WLB2 database:
Topic
Author
Date
High
Skate Board Multimple Vulnerabilities
alex evuln com
05.03.2006

CVSS2 => (AV:N/AC:M/Au:S/C:N/I:P/A:N)

CVSS Base Score
Impact Subscore
Exploitability Subscore
3.5/10
2.9/10
6.8/10
Exploit range
Attack complexity
Authentication
Remote
Medium
Single time
Confidentiality impact
Integrity impact
Availability impact
None
Partial
None
Affected software
Skate board -> Skate board 

 References:
http://xforce.iss.net/xforce/xfdb/24780
http://www.securityfocus.com/bid/16936
http://www.securityfocus.com/archive/1/426658/30/0/threaded
http://www.osvdb.org/23304
http://secunia.com/advisories/18978
http://evuln.com/vulns/84/summary.html
http://securityreason.com/securityalert/540

Copyright 2024, cxsecurity.com

 

Back to Top