Vulnerability Details CVE-2006-5412
admin.php in PHP Outburst Easynews 4.4.1 and earlier, when register_globals is enabled, allows remote attackers to bypass authentication, and gain the ability to execute arbitrary code, via the en_login_id parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.072
EPSS Ranking 91.2%
CVSS Severity
CVSS v2 Score 5.1
Products affected by CVE-2006-5412
-
cpe:2.3:a:php_outburst:easynews:*