PHP remote file inclusion vulnerability in common.php in Intensive Point iUser Ecommerce allows remote attackers to include arbitrary files via a URL in the include_path variable, which is not initialized before being used.
References
Configurations
History
No history.
Information
Published : 2006-02-23 02:06
Updated : 2025-04-03 01:03
NVD link : CVE-2006-0854
Mitre link : CVE-2006-0854
CVE.ORG link : CVE-2006-0854
JSON object : View
Products Affected
intensive_point
- iuser_ecommerce
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')