Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2006-3536

Direct static code injection vulnerability in code/class_db_text.php in EJ3 TOPo 2.2.178 and earlier allows remote attackers to execute arbitrary PHP code via parameters such as (1) descripcion and (2) pais, which are stored directly in a PHP script. NOTE: the provenance of this information is unknown; the details are obtained solely from third party reports.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.9%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-3536
  • Ej3 » Topo » Version: 2.2
    cpe:2.3:a:ej3:topo:2.2
  • Ej3 » Topo » Version: 2.2.178
    cpe:2.3:a:ej3:topo:2.2.178


Contact Us

Shodan ® - All rights reserved