CVE-2006-5509
Last modified
CVE-2006-5509 is a vulnerability of currently unknown severity. Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary PHP code via crafted POST requests that store PHP code in a database that is later processed by eval, as demonstrated using SQL injection via the n parameter.. EPSS estimates a 1.25% chance of exploitation in the next 30 days.
Description
Eval injection vulnerability in addentry.php in WoltLab Burning Book 1.1.2 allows remote attackers to execute arbitrary PHP code via crafted POST requests that store PHP code in a database that is later processed by eval, as demonstrated using SQL injection via the n parameter.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Woltlab | Burning Book | 1.1.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2006-5509?
How severe is CVE-2006-5509?
How do I fix CVE-2006-5509?
Are you affected by CVE-2006-5509?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
