Files
CVEs-PoC/2006/CVE-2006-3689.md
T
2025-09-29 21:09:30 +02:00

808 B

CVE-2006-3689

Description

PHP remote file inclusion vulnerability in user-func.php in Codeworks Gnomedia SubberZ[Lite] allows remote attackers to execute arbitrary PHP code via a URL in the myadmindir parameter. NOTE: this issue has been disputed by a third party that claims that " the myadmindir variable is set before any GET variables are processed.

POC

Reference

Github