Loading...
Loading...
dadaIMC .99.3 uses an insufficiently restrictive FilesMatch directive in the installed .htaccess file, which allows remote attackers to execute arbitrary PHP code by uploading files whose names contain (1) feature, (2) editor, (3) newswire, (4) otherpress, (5) admin, (6) pbook, (7) media, or (8) mod, which are processed as PHP file types (application/x-httpd-php).
December 14, 2006
April 23, 2026
See which npm, PyPI, Go, and Maven packages are affected by CVE-2006-6511
EchelonGraph automatically scans your cloud infrastructure and maps CVE exposure using blast radius analysis.