Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-0887

Eval injection vulnerability in sessions.inc in PHP Base Library (PHPLib) before 7.4a, when index.php3 from the PHPLib distribution is available on the server, allows remote attackers to execute arbitrary PHP code by including a base64-encoded representation of the code in a cookie. NOTE: this description was significantly updated on 20060605 to reflect new details after an initial vague advisory.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.092
EPSS Ranking 92.4%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-0887


Contact Us

Shodan ® - All rights reserved