TROYANOSYVIRUS
Volver a CVEs

CVE-2006-4904

N/A

Descripcion

Dynamic variable evaluation vulnerability in cmpi.php in Qualiteam X-Cart 4.1.3 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code, as demonstrated by PHP remote file inclusion via the xcart_dir parameter.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado9/21/2006
Ultima modificacion4/16/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

qualiteam:x-cart

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.