← back
CVE-2006-4311

CVE-2006-4311

23Vexday Risk Score

No sign of exploitation. It has a public proof of concept.

ssvc Attendepss 3.2%
from disclosure to weapon0 days
Published on NVDAug 23
1st PoCAug 18
exploitation probability
3.2%top 13% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
PHP remote file inclusion vulnerability in Sonium Enterprise Adressbook 0.2 allows remote attackers to execute arbitrary PHP code via the folder parameter in multiple files in the plugins directory, as demonstrated by plugins/1_Adressbuch/delete.php.
Affected products
n/a · n/a
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.