Multiple PHP remote file inclusion vulnerabilities in Dolphin 5.1 allow remote attackers to execute arbitrary PHP code via a URL in the dir[inc] parameter in (1) index.php, (2) aemodule.php, (3) browse.php, (4) cc.php, (5) click.php, (6) faq.php, (7) gallery.php, (8) im.php, (9) inbox.php, (10) join_form.php, (11) logout.php, (12) messages_inbox.php, and many other scripts.
References
Link Resource
http://secunia.com/advisories/21535 Vendor Advisory
http://securitytracker.com/id?1016692 Exploit
http://www.osvdb.org/28473 Exploit
http://www.osvdb.org/28474 Exploit
http://www.osvdb.org/28478 Exploit
http://www.osvdb.org/28479 Exploit
http://www.osvdb.org/28485 Exploit
http://www.osvdb.org/28492 Exploit
http://www.osvdb.org/28493 Exploit
http://www.osvdb.org/28496 Exploit
http://www.osvdb.org/28498 Exploit
http://www.osvdb.org/28499 Exploit
http://www.osvdb.org/28500 Exploit
http://www.osvdb.org/28501 Exploit
http://www.osvdb.org/28502 Exploit
http://www.osvdb.org/28503 Exploit
http://www.osvdb.org/28504 Exploit
http://www.osvdb.org/28505 Exploit
http://www.osvdb.org/28506 Exploit
http://www.osvdb.org/28507 Exploit
http://www.osvdb.org/28508 Exploit
http://www.osvdb.org/28509 Exploit
http://www.osvdb.org/28510 Exploit
http://www.osvdb.org/28511 Exploit
http://www.osvdb.org/28512 Exploit
http://www.osvdb.org/28513 Exploit
http://www.osvdb.org/28514 Exploit
http://www.osvdb.org/28515 Exploit
http://www.osvdb.org/28516 Exploit
http://www.osvdb.org/28517 Exploit
http://www.osvdb.org/28519 Exploit
http://www.osvdb.org/28520 Exploit
http://www.osvdb.org/28521 Exploit
http://www.osvdb.org/28522 Exploit
http://www.osvdb.org/28523 Exploit
http://www.osvdb.org/28524 Exploit
http://www.osvdb.org/28525 Exploit
http://www.osvdb.org/28526 Exploit
http://www.osvdb.org/28527 Exploit
http://www.osvdb.org/28528 Exploit
http://www.osvdb.org/28529 Exploit
http://www.osvdb.org/28530 Exploit
http://www.securityfocus.com/bid/21182
http://www.vupen.com/english/advisories/2006/3346
https://exchange.xforce.ibmcloud.com/vulnerabilities/28363
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2006-08-17T01:00:00

Updated: 2017-07-19T15:57:01

Reserved: 2006-08-16T00:00:00


Link: CVE-2006-4189

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2006-08-17T01:04:00.000

Modified: 2017-07-20T01:32:54.023


Link: CVE-2006-4189

JSON object: View

cve-icon Redhat Information

No data.