TROYANOSYVIRUS
Voltar para CVEs

CVE-2006-4904

N/A

Descricao

Dynamic variable evaluation vulnerability in cmpi.php in Qualiteam X-Cart 4.1.3 and earlier allows remote attackers to overwrite arbitrary program variables and execute arbitrary PHP code, as demonstrated by PHP remote file inclusion via the xcart_dir parameter.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado9/21/2006
Ultima modificacao4/16/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

qualiteam:x-cart

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.