Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2006-4674
Description:Direct static code injection vulnerability in doku.php in DokuWiki before 2006-030-09c allows remote attackers to execute arbitrary PHP code via the X-FORWARDED-FOR HTTP header, which is stored in config.php.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2006-4674
Bugtraq: 20060907 DokuWiki <= 2006-03-09brel /bin/dwpage.php remote commands execution (Google Search)
http://www.securityfocus.com/archive/1/445516/100/0/threaded
http://security.gentoo.org/glsa/glsa-200609-10.xml
http://retrogod.altervista.org/dokuwiki_2006-03-09b_cmd.html
http://secunia.com/advisories/21819
http://secunia.com/advisories/21936
http://securityreason.com/securityalert/1537




© 1998-2025 E-Soft Inc. All rights reserved.