Security Advisory

CVE-2006-7079

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2007-02-27 18:00:00
Last updated 2024-08-07 20:50:06
Assigner mitre
State PUBLISHED

Description

Variable extraction vulnerability in include/common.php in exV2 2.0.4.3 and earlier allows remote attackers to overwrite arbitrary program variables and conduct directory traversal attacks to execute arbitrary code by modifying the $xoopsOption[pagetype] variable.