CVE

Id
19179  
CVE No.
CVE-2006-3075  
Status
Candidate  
Description
Multiple PHP remote file inclusion vulnerabilities in PictureDis Professional 1.33 Build 234 and earlier and PictureDis Photoalbum 4.82 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the lang parameter to files in photoalbum/ including (1) thumstbl.php, (2) wpfiles.php, and (3) wallpapr.php.  
Phase
Assigned (20060619)  
Votes
None (candidate not yet proposed)  
Comments