CVE-2006-5526 EXPLOIT
Patch early
A public exploit exists.
Description
Multiple PHP remote file inclusion vulnerabilities in Teake Nutma Foing, as modified in Fully Modded phpBB (phpbbfm) 2021.4.40 and earlier, allow remote attackers to execute arbitrary PHP code via a URL in the foing_root_path parameter in (a) faq.php, (b) index.php, (c) list.php, (d) login.php, (e) playlist.php, (f) song.php, (g) gen_m3u.php, (h) view_artist.php, (i) view_song.php, (j) flash/set_na.php, (k) flash/initialise.php, (l) flash/get_song.php, (m) includes/common.php, (n) admin/nav.php, (o) admin/main.php, (p) admin/list_artists.php, (q) admin/index.php, (r) admin/genres.php, (s) admin/edit_artist.php, (t) admin/edit_album.php, (u) admin/config.php, and (v) admin/admin_status.php in player/, different vectors than CVE-2006-3045. NOTE: CVE analysis as of 20061026 indicates that files in the admin/ and flash/ directories define foing_root_path before use.
Scoring
| CVSS | 7.5 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
| EPSS | 2.95% — more likely to be exploited than 87% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2006-10-26 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| fully modded phpbb | fully modded phpbb |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Fully Modded phpBB 2021.4.40 - Multiple File Inclusions | 2006-10-23 |
References
- http://secunia.com/advisories/22499
- http://www.osvdb.org/30035
- http://www.vupen.com/english/advisories/2006/4165
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29718
- https://www.exploit-db.com/exploits/2621
- http://secunia.com/advisories/22499
- http://www.osvdb.org/30035
- http://www.vupen.com/english/advisories/2006/4165
- https://exchange.xforce.ibmcloud.com/vulnerabilities/29718
- https://www.exploit-db.com/exploits/2621
→ the Explorer · watch your stack · NVD