AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-2811

HIGH · CVSS 7.5 EPSS 17.39%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-06-05 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-2811
Severity
HIGH
CVSS
7.5
EPSS
17.39%

Original NVD Description

Multiple PHP remote file inclusion vulnerabilities in Cantico Ovidentia 5.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the babInstallPath parameter in (1) index.php, (2) topman.php, (3) approb.php, (4) vacadmb.php, (5) vacadma.php, (6) vacadm.php, (7) statart.php, (8) search.php, (9) posts.php, (10) options.php, (11) login.php, (12) frchart.php, (13) flbchart.php, (14) fileman.php, (15) faq.php, (16) event.php, (17) directory.php, (18) articles.php, (19) artedit.php, (20) calday.php, and additional unspecified PHP scripts. NOTE: the utilit.php vector is already covered by CVE-2005-1964.