CVE-2006-0147
Last modified
CVE-2006-0147 is a vulnerability of currently unknown severity. Dynamic code evaluation vulnerability in tests/tmssql.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PhpOpenChat, possibly (7) MAXdev MD-Pro, and (8) Simplog, allows remote attackers to execute arbitrary PHP functions via the do parameter, which is saved in a variable that is then executed as a function, as demonstrated using phpinfo.. EPSS estimates a 12.77% chance of exploitation in the next 30 days.
Description
Dynamic code evaluation vulnerability in tests/tmssql.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PhpOpenChat, possibly (7) MAXdev MD-Pro, and (8) Simplog, allows remote attackers to execute arbitrary PHP functions via the do parameter, which is saved in a variable that is then executed as a function, as demonstrated using phpinfo.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| John Lim | Adodb | 4.66 |
| John Lim | Adodb | 4.68 |
| Mantis | Mantis | 0.19.4 |
| Mantis | Mantis | 1.0.0_rc4 |
| Moodle | Moodle | 1.5.3 |
| Postnuke Software Foundation | Postnuke | 0.761 |
| The Cacti Group | Cacti | 0.8.6g |
References
- http://secunia.com/advisories/17418Exploit, Patch, Vendor Advisory
- http://secunia.com/advisories/18233Patch, Vendor Advisory
- http://secunia.com/advisories/18254Patch, Vendor Advisory
- http://secunia.com/advisories/18260Patch, Vendor Advisory
- http://secunia.com/advisories/18267Vendor Advisory
- http://secunia.com/advisories/18276Patch, Vendor Advisory
- http://secunia.com/advisories/19555Patch, Vendor Advisory
- http://secunia.com/advisories/19590Patch, Vendor Advisory
- http://secunia.com/advisories/19591Patch, Vendor Advisory
- http://secunia.com/advisories/19600Vendor Advisory
- http://secunia.com/advisories/19628Patch, Vendor Advisory
- http://secunia.com/secunia_research/2005-64/advisory/Exploit, Patch, Vendor Advisory
- http://www.debian.org/security/2006/dsa-1029Patch, Vendor Advisory
- http://www.debian.org/security/2006/dsa-1030Patch, Vendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200604-07.xmlPatch, Vendor Advisory
- http://secunia.com/advisories/17418Exploit, Patch, Vendor Advisory
- http://secunia.com/advisories/18233Patch, Vendor Advisory
- http://secunia.com/advisories/18254Patch, Vendor Advisory
- http://secunia.com/advisories/18260Patch, Vendor Advisory
- http://secunia.com/advisories/18267Vendor Advisory
- http://secunia.com/advisories/18276Patch, Vendor Advisory
- http://secunia.com/advisories/19555Patch, Vendor Advisory
- http://secunia.com/advisories/19590Patch, Vendor Advisory
- http://secunia.com/advisories/19591Patch, Vendor Advisory
- http://secunia.com/advisories/19600Vendor Advisory
- http://secunia.com/advisories/19628Patch, Vendor Advisory
- http://secunia.com/secunia_research/2005-64/advisory/Exploit, Patch, Vendor Advisory
- http://www.debian.org/security/2006/dsa-1029Patch, Vendor Advisory
- http://www.debian.org/security/2006/dsa-1030Patch, Vendor Advisory
- http://www.gentoo.org/security/en/glsa/glsa-200604-07.xmlPatch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-0147?
How severe is CVE-2006-0147?
How do I fix CVE-2006-0147?
Are you affected by CVE-2006-0147?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
