Return to CVE list

CVE-2006-4040

7.5
Critical

CVE-2006-4040

cve@mitre.org
Deferred

Description

PHP remote file inclusion vulnerability in myevent.php in myWebland myEvent 1.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the myevent_path parameter.

Exploits