CVE-2006-5911

N/A Unknown
Published: November 15, 2006 Modified: April 23, 2026
View on NVD

Description

Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute arbitrary PHP code via a URL in the g_documentRoot parameter to (1) Alias.php, (2) Article.php, (3) ArticleAttachment.php, (4) ArticleComment.php, (5) ArticleData.php, (6) ArticleImage.php, (7) ArticleIndex.php, (8) ArticlePublish.php, (9) ArticleTopic.php, (10) ArticleType.php, (11) ArticleTypeField.php, (12) Attachment.php, (13) Country.php, (14) DatabaseObject.php, (15) Event.php, (16) IPAccess.php, (17) Image.php, (18) Issue.php, (19) IssuePublish.php, (20) Language.php, (21) Log.php, (22) LoginAttempts.php, (23) Publication.php, (24) Section.php, (25) ShortURL.php, (26) Subscription.php, (27) SubscriptionDefaultTime.php, (28) SubscriptionSection.php, (29) SystemPref.php, (30) Template.php, (31) TimeUnit.php, (32) Topic.php, (33) UrlType.php, (34) User.php, and (35) UserType.php in implementation/management/classes/; (36) configuration.php and (37) db_connect.php in implementation/management/; and (38) LocalizerConfig.php and (39) LocalizerLanguage.php in implementation/management/priv/localizer/.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://www.osvdb.org/34187
Source: cve@mitre.org
http://www.osvdb.org/34188
Source: cve@mitre.org
http://www.osvdb.org/34189
Source: cve@mitre.org
http://www.osvdb.org/34190
Source: cve@mitre.org
http://www.osvdb.org/34191
Source: cve@mitre.org
http://www.osvdb.org/34192
Source: cve@mitre.org
http://www.osvdb.org/34193
Source: cve@mitre.org
http://www.osvdb.org/34194
Source: cve@mitre.org
http://www.osvdb.org/34195
Source: cve@mitre.org
http://www.osvdb.org/34196
Source: cve@mitre.org
http://www.osvdb.org/34197
Source: cve@mitre.org
http://www.osvdb.org/34198
Source: cve@mitre.org
http://www.osvdb.org/34199
Source: cve@mitre.org
http://www.osvdb.org/34200
Source: cve@mitre.org
http://www.osvdb.org/34201
Source: cve@mitre.org
http://www.osvdb.org/34202
Source: cve@mitre.org
http://www.osvdb.org/34203
Source: cve@mitre.org
http://www.osvdb.org/34204
Source: cve@mitre.org
http://www.osvdb.org/34205
Source: cve@mitre.org
http://www.osvdb.org/34206
Source: cve@mitre.org
http://www.osvdb.org/34207
Source: cve@mitre.org
http://www.osvdb.org/34208
Source: cve@mitre.org
http://www.osvdb.org/34209
Source: cve@mitre.org
http://www.osvdb.org/34210
Source: cve@mitre.org
http://www.osvdb.org/34211
Source: cve@mitre.org
http://www.osvdb.org/34212
Source: cve@mitre.org
http://www.osvdb.org/34213
Source: cve@mitre.org
http://www.osvdb.org/34214
Source: cve@mitre.org
http://www.osvdb.org/34215
Source: cve@mitre.org
http://www.osvdb.org/34216
Source: cve@mitre.org
http://www.osvdb.org/34217
Source: cve@mitre.org
http://www.osvdb.org/34218
Source: cve@mitre.org
http://www.osvdb.org/34219
Source: cve@mitre.org
http://www.osvdb.org/34220
Source: cve@mitre.org
http://www.osvdb.org/34221
Source: cve@mitre.org
http://www.osvdb.org/34222
Source: cve@mitre.org
http://www.osvdb.org/34223
Source: cve@mitre.org
http://www.osvdb.org/34224
Source: cve@mitre.org
http://www.osvdb.org/34225
Source: cve@mitre.org
http://code.campware.org/projects/campsite/changeset/6057
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://code.campware.org/projects/campsite/changeset/6058
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
http://code.campware.org/projects/campsite/query?milestone=2.6.2
Source: af854a3a-2127-422b-91ae-364da2661108
http://code.campware.org/projects/campsite/ticket/2349
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34187
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34188
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34189
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34190
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34191
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34192
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34193
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34194
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34195
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34196
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34197
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34198
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34199
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34200
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34201
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34202
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34203
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34204
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34205
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34206
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34207
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34208
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34209
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34210
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34211
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34212
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34213
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34214
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34215
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34216
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34217
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34218
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34219
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34220
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34221
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34222
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34223
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34224
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.osvdb.org/34225
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/23874
Source: af854a3a-2127-422b-91ae-364da2661108

90 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
3.2%
87th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

campware.org