← Back

CVE-2006-7130

nvd nist
Published: Mar 6, 2007Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

PHP remote file inclusion vulnerability in backend/primitives/cache/media.php in Jinzora 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the include_path parameter, a different vector than CVE-2006-6770.

Affected (27)

Products: Jinzora: Jinzora
1 product
Jinzora
Configuration A
27 vulnerable
Vulnerable SoftwareAffected Versions
Jinzora
Up to 2.1
Version 0.1.1
Version 0.2
Version 0.3.1
Version 0.3
Version 0.3 pre
Version 0.3 pre_2
Version 0.4
Version 0.5
Version 0.6.2
Version 0.7
Version 0.8.1
Version 0.8.2
Version 0.9.1
Version 0.9.2
Version 0.9.3
Version 0.9.4
Version 0.9.5
Version 0.9
Version 1.0.1
Version 1.1
Version 2.0.1
Version 2.0
Version 2.0 beta_1
Version 2.0 beta_2
Version 2.0 rc1
Version 2.0 rc2

References (10)

Source: cve@mitre.org
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.