Multiple PHP remote file inclusion vulnerabilities in Open Conference Systems (OCS) before 1.1.6 allow remote attackers to execute arbitrary PHP code via a URL in the fullpath parameter in (1) include/theme.inc.php or (2) include/footer.inc.php.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2006-10-17T15:00:00
Updated: 2024-08-07T19:48:30.134Z
Reserved: 2006-10-17T00:00:00
Link: CVE-2006-5308

No data.

Status : Modified
Published: 2006-10-17T15:07:00.000
Modified: 2024-11-21T00:18:42.167
Link: CVE-2006-5308

No data.