AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-3532

MEDIUM · CVSS 5.1 EPSS 7.89%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-07-12 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-3532
Severity
MEDIUM
CVSS
5.1
EPSS
7.89%

Original NVD Description

PHP file inclusion vulnerability in includes/edit_new.php in Pivot 1.30 RC2 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a FTP URL or full file path in the Paths[extensions_path] parameter.