Vulnerability Details CVE-2006-5123
Multiple PHP remote file inclusion vulnerabilities in Albrecht Guenther PHProjekt 5.1.x before 5.1.2 allow remote attackers to execute arbitrary PHP code via a URL in the (1) lib_path or (2) lang_path parameter in unspecified files, related to code changes intended to fix inclusion, a different vulnerability than CVE-2002-0451, CVE-2006-4204, and CVE-2006-4609.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.018
EPSS Ranking 82.0%
CVSS Severity
CVSS v2 Score 7.5
Products affected by CVE-2006-5123
-
cpe:2.3:a:phprojekt:phprojekt:*
-
cpe:2.3:a:phprojekt:phprojekt:5.0
-
cpe:2.3:a:phprojekt:phprojekt:5.0.1
-
cpe:2.3:a:phprojekt:phprojekt:5.0.2
-
cpe:2.3:a:phprojekt:phprojekt:5.1
-
cpe:2.3:a:phprojekt:phprojekt:5.1_beta