Security Advisory

CVE-2006-1636

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-04-06 10:00:00
Last updated 2024-08-07 17:19:48
Assigner mitre
State PUBLISHED

Description

PHP remote file inclusion vulnerability in get_header.php in VWar 1.5.0 R12 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the vwar_root parameter. NOTE: this is a different vulnerability than CVE-2006-1503.