Security Advisory

CVE-2006-0214

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-01-15 11:00:00
Last updated 2024-08-07 16:25:33
Assigner mitre
State PUBLISHED

Description

Eval injection vulnerability in ezDatabase 2.0 and earlier allows remote attackers to execute arbitrary PHP code via the db_id parameter to visitorupload.php, as demonstrated using phpinfo and include function calls.