CVE-2006-1770
high · 10Multiple PHP remote file inclusion vulnerabilities in Azerbaijan Design & Development Group (AZDG) AzDGVote allow remote attackers to execute arbitrary PHP code via a URL in the int_path parameter in (1) vote.php, (2) view.php, (3) admin.php, and (4) admin/index.php.
10
CVSS
10.7%
EPSS (exploit prob.)
96th
EPSS percentile
2006-04-13
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| azerbaijan_development_group | azdgvote | 1.0 |
Check a specific version with /api/v1/cve/match.
References
- http://secunia.com/advisories/19630
- http://securityreason.com/securityalert/695
- http://www.securityfocus.com/archive/1/430691/100/0/threaded
- http://www.securityfocus.com/bid/17447
- http://www.vupen.com/english/advisories/2006/1324
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25762
- http://secunia.com/advisories/19630
- http://securityreason.com/securityalert/695
- http://www.securityfocus.com/archive/1/430691/100/0/threaded
- http://www.securityfocus.com/bid/17447
- http://www.vupen.com/english/advisories/2006/1324
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25762
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2006-1770