{"containers":{"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2006-10-19T00:00:00.000Z","descriptions":[{"lang":"en","value":"Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute arbitrary PHP code via a URL in the g_documentRoot parameter to (1) Alias.php, (2) Article.php, (3) ArticleAttachment.php, (4) ArticleComment.php, (5) ArticleData.php, (6) ArticleImage.php, (7) ArticleIndex.php, (8) ArticlePublish.php, (9) ArticleTopic.php, (10) ArticleType.php, (11) ArticleTypeField.php, (12) Attachment.php, (13) Country.php, (14) DatabaseObject.php, (15) Event.php, (16) IPAccess.php, (17) Image.php, (18) Issue.php, (19) IssuePublish.php, (20) Language.php, (21) Log.php, (22) LoginAttempts.php, (23) Publication.php, (24) Section.php, (25) ShortURL.php, (26) Subscription.php, (27) SubscriptionDefaultTime.php, (28) SubscriptionSection.php, (29) SystemPref.php, (30) Template.php, (31) TimeUnit.php, (32) Topic.php, (33) UrlType.php, (34) User.php, and (35) UserType.php in implementation/management/classes/; (36) configuration.php and (37) db_connect.php in implementation/management/; and (38) LocalizerConfig.php and (39) LocalizerLanguage.php in implementation/management/priv/localizer/."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2007-05-10T09:00:00.000Z","orgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","shortName":"mitre"},"references":[{"name":"34217","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34217"},{"name":"34215","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34215"},{"name":"34189","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34189"},{"name":"34214","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34214"},{"tags":["x_refsource_CONFIRM"],"url":"http://sourceforge.net/project/shownotes.php?release_id=459574&group_id=66936"},{"name":"34198","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34198"},{"name":"34195","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34195"},{"name":"34205","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34205"},{"name":"34187","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34187"},{"name":"34208","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34208"},{"name":"34216","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34216"},{"tags":["x_refsource_CONFIRM"],"url":"http://code.campware.org/projects/campsite/ticket/2349"},{"name":"34224","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34224"},{"tags":["x_refsource_CONFIRM"],"url":"http://code.campware.org/projects/campsite/query?milestone=2.6.2"},{"name":"34197","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34197"},{"name":"34221","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34221"},{"name":"34213","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34213"},{"name":"34209","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34209"},{"name":"34211","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34211"},{"name":"34191","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34191"},{"tags":["x_refsource_CONFIRM"],"url":"http://code.campware.org/projects/campsite/changeset/6057"},{"name":"34225","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34225"},{"name":"34203","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34203"},{"name":"34200","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34200"},{"name":"34222","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34222"},{"name":"34223","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34223"},{"name":"34218","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34218"},{"name":"34206","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34206"},{"name":"34199","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34199"},{"name":"34196","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34196"},{"name":"34219","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34219"},{"name":"34201","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34201"},{"name":"23874","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/23874"},{"name":"34192","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34192"},{"name":"34210","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34210"},{"name":"34188","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34188"},{"name":"34204","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34204"},{"name":"34202","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34202"},{"name":"34190","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34190"},{"tags":["x_refsource_CONFIRM"],"url":"http://code.campware.org/projects/campsite/changeset/6058"},{"name":"34220","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34220"},{"name":"34207","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34207"},{"name":"34193","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34193"},{"name":"34194","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34194"},{"name":"34212","tags":["vdb-entry","x_refsource_OSVDB"],"url":"http://www.osvdb.org/34212"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"cve@mitre.org","ID":"CVE-2006-5911","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute arbitrary PHP code via a URL in the g_documentRoot parameter to (1) Alias.php, (2) Article.php, (3) ArticleAttachment.php, (4) ArticleComment.php, (5) ArticleData.php, (6) ArticleImage.php, (7) ArticleIndex.php, (8) ArticlePublish.php, (9) ArticleTopic.php, (10) ArticleType.php, (11) ArticleTypeField.php, (12) Attachment.php, (13) Country.php, (14) DatabaseObject.php, (15) Event.php, (16) IPAccess.php, (17) Image.php, (18) Issue.php, (19) IssuePublish.php, (20) Language.php, (21) Log.php, (22) LoginAttempts.php, (23) Publication.php, (24) Section.php, (25) ShortURL.php, (26) Subscription.php, (27) SubscriptionDefaultTime.php, (28) SubscriptionSection.php, (29) SystemPref.php, (30) Template.php, (31) TimeUnit.php, (32) Topic.php, (33) UrlType.php, (34) User.php, and (35) UserType.php in implementation/management/classes/; (36) configuration.php and (37) db_connect.php in implementation/management/; and (38) LocalizerConfig.php and (39) LocalizerLanguage.php in implementation/management/priv/localizer/."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"34217","refsource":"OSVDB","url":"http://www.osvdb.org/34217"},{"name":"34215","refsource":"OSVDB","url":"http://www.osvdb.org/34215"},{"name":"34189","refsource":"OSVDB","url":"http://www.osvdb.org/34189"},{"name":"34214","refsource":"OSVDB","url":"http://www.osvdb.org/34214"},{"name":"http://sourceforge.net/project/shownotes.php?release_id=459574&group_id=66936","refsource":"CONFIRM","url":"http://sourceforge.net/project/shownotes.php?release_id=459574&group_id=66936"},{"name":"34198","refsource":"OSVDB","url":"http://www.osvdb.org/34198"},{"name":"34195","refsource":"OSVDB","url":"http://www.osvdb.org/34195"},{"name":"34205","refsource":"OSVDB","url":"http://www.osvdb.org/34205"},{"name":"34187","refsource":"OSVDB","url":"http://www.osvdb.org/34187"},{"name":"34208","refsource":"OSVDB","url":"http://www.osvdb.org/34208"},{"name":"34216","refsource":"OSVDB","url":"http://www.osvdb.org/34216"},{"name":"http://code.campware.org/projects/campsite/ticket/2349","refsource":"CONFIRM","url":"http://code.campware.org/projects/campsite/ticket/2349"},{"name":"34224","refsource":"OSVDB","url":"http://www.osvdb.org/34224"},{"name":"http://code.campware.org/projects/campsite/query?milestone=2.6.2","refsource":"CONFIRM","url":"http://code.campware.org/projects/campsite/query?milestone=2.6.2"},{"name":"34197","refsource":"OSVDB","url":"http://www.osvdb.org/34197"},{"name":"34221","refsource":"OSVDB","url":"http://www.osvdb.org/34221"},{"name":"34213","refsource":"OSVDB","url":"http://www.osvdb.org/34213"},{"name":"34209","refsource":"OSVDB","url":"http://www.osvdb.org/34209"},{"name":"34211","refsource":"OSVDB","url":"http://www.osvdb.org/34211"},{"name":"34191","refsource":"OSVDB","url":"http://www.osvdb.org/34191"},{"name":"http://code.campware.org/projects/campsite/changeset/6057","refsource":"CONFIRM","url":"http://code.campware.org/projects/campsite/changeset/6057"},{"name":"34225","refsource":"OSVDB","url":"http://www.osvdb.org/34225"},{"name":"34203","refsource":"OSVDB","url":"http://www.osvdb.org/34203"},{"name":"34200","refsource":"OSVDB","url":"http://www.osvdb.org/34200"},{"name":"34222","refsource":"OSVDB","url":"http://www.osvdb.org/34222"},{"name":"34223","refsource":"OSVDB","url":"http://www.osvdb.org/34223"},{"name":"34218","refsource":"OSVDB","url":"http://www.osvdb.org/34218"},{"name":"34206","refsource":"OSVDB","url":"http://www.osvdb.org/34206"},{"name":"34199","refsource":"OSVDB","url":"http://www.osvdb.org/34199"},{"name":"34196","refsource":"OSVDB","url":"http://www.osvdb.org/34196"},{"name":"34219","refsource":"OSVDB","url":"http://www.osvdb.org/34219"},{"name":"34201","refsource":"OSVDB","url":"http://www.osvdb.org/34201"},{"name":"23874","refsource":"BID","url":"http://www.securityfocus.com/bid/23874"},{"name":"34192","refsource":"OSVDB","url":"http://www.osvdb.org/34192"},{"name":"34210","refsource":"OSVDB","url":"http://www.osvdb.org/34210"},{"name":"34188","refsource":"OSVDB","url":"http://www.osvdb.org/34188"},{"name":"34204","refsource":"OSVDB","url":"http://www.osvdb.org/34204"},{"name":"34202","refsource":"OSVDB","url":"http://www.osvdb.org/34202"},{"name":"34190","refsource":"OSVDB","url":"http://www.osvdb.org/34190"},{"name":"http://code.campware.org/projects/campsite/changeset/6058","refsource":"CONFIRM","url":"http://code.campware.org/projects/campsite/changeset/6058"},{"name":"34220","refsource":"OSVDB","url":"http://www.osvdb.org/34220"},{"name":"34207","refsource":"OSVDB","url":"http://www.osvdb.org/34207"},{"name":"34193","refsource":"OSVDB","url":"http://www.osvdb.org/34193"},{"name":"34194","refsource":"OSVDB","url":"http://www.osvdb.org/34194"},{"name":"34212","refsource":"OSVDB","url":"http://www.osvdb.org/34212"}]}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-07T20:12:30.660Z"},"title":"CVE Program Container","references":[{"name":"34217","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34217"},{"name":"34215","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34215"},{"name":"34189","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34189"},{"name":"34214","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34214"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://sourceforge.net/project/shownotes.php?release_id=459574&group_id=66936"},{"name":"34198","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34198"},{"name":"34195","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34195"},{"name":"34205","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34205"},{"name":"34187","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34187"},{"name":"34208","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34208"},{"name":"34216","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34216"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://code.campware.org/projects/campsite/ticket/2349"},{"name":"34224","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34224"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://code.campware.org/projects/campsite/query?milestone=2.6.2"},{"name":"34197","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34197"},{"name":"34221","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34221"},{"name":"34213","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34213"},{"name":"34209","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34209"},{"name":"34211","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34211"},{"name":"34191","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34191"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://code.campware.org/projects/campsite/changeset/6057"},{"name":"34225","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34225"},{"name":"34203","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34203"},{"name":"34200","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34200"},{"name":"34222","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34222"},{"name":"34223","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34223"},{"name":"34218","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34218"},{"name":"34206","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34206"},{"name":"34199","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34199"},{"name":"34196","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34196"},{"name":"34219","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34219"},{"name":"34201","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34201"},{"name":"23874","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/23874"},{"name":"34192","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34192"},{"name":"34210","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34210"},{"name":"34188","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34188"},{"name":"34204","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34204"},{"name":"34202","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34202"},{"name":"34190","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34190"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://code.campware.org/projects/campsite/changeset/6058"},{"name":"34220","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34220"},{"name":"34207","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34207"},{"name":"34193","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34193"},{"name":"34194","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34194"},{"name":"34212","tags":["vdb-entry","x_refsource_OSVDB","x_transferred"],"url":"http://www.osvdb.org/34212"}]}]},"cveMetadata":{"assignerOrgId":"8254265b-2729-46b6-b9e3-3dfca2d5bfca","assignerShortName":"mitre","cveId":"CVE-2006-5911","datePublished":"2006-11-15T15:00:00.000Z","dateReserved":"2006-11-15T00:00:00.000Z","dateUpdated":"2024-08-07T20:12:30.660Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}