CVE-2006-5517 – Rhode Island Open Meetings Filing Application (OMFA) PHP Remote File Inclusion

Description

Multiple PHP remote file inclusion vulnerabilities in Rhode Island Open Meetings Filing Application (OMFA) allow remote attackers to execute arbitrary PHP code via a URL in the PROJECT_ROOT parameter to (1) editmeetings/session.php, (2) email/session.php, (3) entityproperties/session.php, or (4) inc/mail.php.


Vulnerability Information

  • Product / Framework: Rhode_island_secretary_of_state
  • Vendor Domain: sourceforge.net
  • Vulnerability Type: Code Injection
  • CVE Details: View Full CVE Details →