CVE-2006-0147
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 13%
exploitation probability
13%top 4% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Dynamic code evaluation vulnerability in tests/tmssql.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PhpOpenChat, possibly (7) MAXdev MD-Pro, and (8) Simplog, allows remote attackers to execute arbitrary PHP functions via the do parameter, which is saved in a variable that is then executed as a function, as demonstrated using phpinfo.
Affected products
n/a · n/apublic PoCs found — 1
cve_referencewww.exploit-db.com/exploits/1663unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://retrogod.altervista.org/phpopenchat_30x_sql_xpl.htmlhttp://retrogod.altervista.org/simplog_092_incl_xpl.htmlhttp://secunia.com/advisories/17418http://secunia.com/advisories/18233http://secunia.com/advisories/18254http://secunia.com/advisories/18260http://secunia.com/advisories/18267http://secunia.com/advisories/18276http://secunia.com/advisories/19555http://secunia.com/advisories/19590http://secunia.com/advisories/19591http://secunia.com/advisories/19600