Security Advisory

CVE-2006-3478

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2006-07-10 20:00:00
Last updated 2024-08-07 18:30:34
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

PHP remote file inclusion vulnerability in styles/default/global_header.php in MyPHP CMS 0.3 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the domain parameter.