CVE-2006-2686

N/A Unknown
Published: May 31, 2006 Modified: April 16, 2026
View on NVD

Description

PHP remote file inclusion vulnerabilities in ActionApps 2.8.1 allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[AA_INC_PATH] parameter in (1) cached.php3, (2) cron.php3, (3) discussion.php3, (4) filldisc.php3, (5) filler.php3, (6) fillform.php3, (7) go.php3, (8) hiercons.php3, (9) jsview.php3, (10) live_checkbox.php3, (11) offline.php3, (12) post2shtml.php3, (13) search.php3, (14) slice.php3, (15) sql_update.php3, (16) view.php3, (17) multiple files in the (18) admin/ folder, (19) includes folder, and (20) modules/ folder.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/20299
Source: cve@mitre.org
Exploit Vendor Advisory
http://www.osvdb.org/27253
Source: cve@mitre.org
http://www.osvdb.org/27254
Source: cve@mitre.org
http://www.osvdb.org/27256
Source: cve@mitre.org
http://www.osvdb.org/27257
Source: cve@mitre.org
http://www.osvdb.org/27258
Source: cve@mitre.org
http://www.osvdb.org/27259
Source: cve@mitre.org
http://www.osvdb.org/27260
Source: cve@mitre.org
http://www.osvdb.org/27261
Source: cve@mitre.org
http://www.osvdb.org/27262
Source: cve@mitre.org
http://www.osvdb.org/27263
Source: cve@mitre.org
http://www.osvdb.org/27264
Source: cve@mitre.org
http://www.osvdb.org/27265
Source: cve@mitre.org
http://www.osvdb.org/27266
Source: cve@mitre.org
http://www.osvdb.org/27267
Source: cve@mitre.org
http://www.osvdb.org/27268
Source: cve@mitre.org
http://www.osvdb.org/27269
Source: cve@mitre.org
http://www.osvdb.org/27270
Source: cve@mitre.org
http://www.osvdb.org/27271
Source: cve@mitre.org
http://www.osvdb.org/27272
Source: cve@mitre.org
http://www.osvdb.org/27273
Source: cve@mitre.org
http://www.osvdb.org/27274
Source: cve@mitre.org
http://www.osvdb.org/27275
Source: cve@mitre.org
http://www.osvdb.org/27276
Source: cve@mitre.org
http://www.osvdb.org/27277
Source: cve@mitre.org
http://www.osvdb.org/27278
Source: cve@mitre.org
http://www.osvdb.org/27279
Source: cve@mitre.org
http://www.osvdb.org/27280
Source: cve@mitre.org
http://www.osvdb.org/27281
Source: cve@mitre.org
http://www.osvdb.org/27282
Source: cve@mitre.org
http://www.osvdb.org/27283
Source: cve@mitre.org
http://www.osvdb.org/27284
Source: cve@mitre.org
http://www.osvdb.org/27285
Source: cve@mitre.org
http://www.osvdb.org/27286
Source: cve@mitre.org
http://www.osvdb.org/27287
Source: cve@mitre.org
http://www.osvdb.org/27288
Source: cve@mitre.org
http://www.osvdb.org/27289
Source: cve@mitre.org
http://www.osvdb.org/27290
Source: cve@mitre.org
http://www.osvdb.org/27291
Source: cve@mitre.org
http://www.osvdb.org/27292
Source: cve@mitre.org
http://www.osvdb.org/27293
Source: cve@mitre.org
http://www.osvdb.org/27294
Source: cve@mitre.org
http://www.osvdb.org/27295
Source: cve@mitre.org
http://www.osvdb.org/27296
Source: cve@mitre.org
http://www.osvdb.org/27297
Source: cve@mitre.org
http://www.osvdb.org/27298
Source: cve@mitre.org
http://www.osvdb.org/27299
Source: cve@mitre.org
http://www.osvdb.org/27300
Source: cve@mitre.org
http://www.osvdb.org/27301
Source: cve@mitre.org
http://www.osvdb.org/27302
Source: cve@mitre.org
http://www.osvdb.org/27303
Source: cve@mitre.org
http://www.osvdb.org/27304
Source: cve@mitre.org
http://www.osvdb.org/27305
Source: cve@mitre.org
http://www.osvdb.org/27306
Source: cve@mitre.org
http://www.osvdb.org/27308
Source: cve@mitre.org
http://www.osvdb.org/27309
Source: cve@mitre.org
http://www.osvdb.org/27310
Source: cve@mitre.org
http://secunia.com/advisories/20299
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Vendor Advisory
http://www.osvdb.org/27253
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27254
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27256
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27257
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27258
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27259
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27260
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27261
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27262
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27263
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27264
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27265
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27266
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27267
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27268
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27269
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27270
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27271
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27272
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27273
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27274
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27275
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27276
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27277
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27278
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27279
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27280
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27281
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27282
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27283
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27284
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27285
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27286
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27287
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27288
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27289
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27290
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27291
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27292
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27293
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27294
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27295
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27296
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27297
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27298
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27299
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27300
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27301
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27302
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27303
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27304
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27305
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27306
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27308
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27309
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/27310
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/19133
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2006/1997
Source: af854a3a-2127-422b-91ae-364da2661108
https://exchange.xforce.ibmcloud.com/vulnerabilities/26776
Source: af854a3a-2127-422b-91ae-364da2661108
https://www.exploit-db.com/exploits/1829
Source: af854a3a-2127-422b-91ae-364da2661108

122 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
9.9%
93th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

actionapps