CVE-2006-4581

Unrestricted file upload vulnerability in The Address Book 1.04e validates the Content-Type header but not the file extension, which allows remote attackers to upload arbitrary PHP scripts.
Configurations

Configuration 1 (hide)

cpe:2.3:a:the_address_book:the_address_book:1.04e:*:*:*:*:*:*:*

History

No history.

Information

Published : 2006-12-31 05:00

Updated : 2017-07-20 01:33


NVD link : CVE-2006-4581

Mitre link : CVE-2006-4581

CVE.ORG link : CVE-2006-4581


JSON object : View

Products Affected

the_address_book

  • the_address_book