Release DateJan 18, 2007 |
Severitylow |
ImpactCompromise of the affected system. |
DescriptionIt indicates a possible exploit of a file inclusion vulnerability in Knusperleicht Shoutbox 4.4 and earlier, that may allow remote attackers to execute arbitrary PHP code via a URL in the sb_include_path parameter. |
Affected ProductsKnusperleicht ShoutBox 4.4 |
Recommended ActionsCurrently we are not aware of any vendor-supplied patches for this issue. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2006-3989 |
Reference/shttp://www.securityfocus.com/bid/19273 (BugTraq)http://www.milw0rm.com/exploits/2103 |