{
    "containers": {
        "cna": {
            "affected": [
                {
                    "product": "n/a",
                    "vendor": "n/a",
                    "versions": [
                        {
                            "status": "affected",
                            "version": "n/a"
                        }
                    ]
                }
            ],
            "datePublic": "2006-05-31T00:00:00",
            "descriptions": [
                {
                    "lang": "en",
                    "value": "Multiple PHP remote file inclusion vulnerabilities in Cantico Ovidentia 5.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the babInstallPath parameter in (1) index.php, (2) topman.php, (3) approb.php, (4) vacadmb.php, (5) vacadma.php, (6) vacadm.php, (7) statart.php, (8) search.php, (9) posts.php, (10) options.php, (11) login.php, (12) frchart.php, (13) flbchart.php, (14) fileman.php, (15) faq.php, (16) event.php, (17) directory.php, (18) articles.php, (19) artedit.php, (20) calday.php, and additional unspecified PHP scripts.  NOTE: the utilit.php vector is already covered by CVE-2005-1964."
                }
            ],
            "problemTypes": [
                {
                    "descriptions": [
                        {
                            "description": "n/a",
                            "lang": "en",
                            "type": "text"
                        }
                    ]
                }
            ],
            "providerMetadata": {
                "dateUpdated": "2018-10-18T14:57:01",
                "orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
                "shortName": "mitre"
            },
            "references": [
                {
                    "name": "27223",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27223"
                },
                {
                    "name": "ovidentia-multiple-scripts-file-include(26981)",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_XF"
                    ],
                    "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/26981"
                },
                {
                    "name": "27228",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27228"
                },
                {
                    "name": "27215",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27215"
                },
                {
                    "name": "27224",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27224"
                },
                {
                    "name": "27214",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27214"
                },
                {
                    "name": "1033",
                    "tags": [
                        "third-party-advisory",
                        "x_refsource_SREASON"
                    ],
                    "url": "http://securityreason.com/securityalert/1033"
                },
                {
                    "name": "27216",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27216"
                },
                {
                    "name": "27212",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27212"
                },
                {
                    "name": "27222",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27222"
                },
                {
                    "name": "27221",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27221"
                },
                {
                    "name": "27226",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27226"
                },
                {
                    "name": "27220",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27220"
                },
                {
                    "name": "27225",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27225"
                },
                {
                    "name": "27211",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27211"
                },
                {
                    "name": "27229",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27229"
                },
                {
                    "name": "18232",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_BID"
                    ],
                    "url": "http://www.securityfocus.com/bid/18232"
                },
                {
                    "name": "20070114 Ovidentia 5.6x Series Remote File &#304;nclude",
                    "tags": [
                        "mailing-list",
                        "x_refsource_BUGTRAQ"
                    ],
                    "url": "http://www.securityfocus.com/archive/1/456893/100/200/threaded"
                },
                {
                    "name": "27209",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27209"
                },
                {
                    "name": "27218",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27218"
                },
                {
                    "name": "27217",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27217"
                },
                {
                    "name": "27227",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27227"
                },
                {
                    "name": "27213",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27213"
                },
                {
                    "name": "20060531 multiple file inclusion exploits in ovidentia v5.8.0",
                    "tags": [
                        "mailing-list",
                        "x_refsource_BUGTRAQ"
                    ],
                    "url": "http://www.securityfocus.com/archive/1/435590/100/0/threaded"
                },
                {
                    "name": "27219",
                    "tags": [
                        "vdb-entry",
                        "x_refsource_OSVDB"
                    ],
                    "url": "http://www.osvdb.org/27219"
                },
                {
                    "name": "20070209 Ovidentia Exploit Codeds",
                    "tags": [
                        "mailing-list",
                        "x_refsource_BUGTRAQ"
                    ],
                    "url": "http://www.securityfocus.com/archive/1/459572/100/0/threaded"
                }
            ],
            "x_legacyV4Record": {
                "CVE_data_meta": {
                    "ASSIGNER": "cve@mitre.org",
                    "ID": "CVE-2006-2811",
                    "STATE": "PUBLIC"
                },
                "affects": {
                    "vendor": {
                        "vendor_data": [
                            {
                                "product": {
                                    "product_data": [
                                        {
                                            "product_name": "n/a",
                                            "version": {
                                                "version_data": [
                                                    {
                                                        "version_value": "n/a"
                                                    }
                                                ]
                                            }
                                        }
                                    ]
                                },
                                "vendor_name": "n/a"
                            }
                        ]
                    }
                },
                "data_format": "MITRE",
                "data_type": "CVE",
                "data_version": "4.0",
                "description": {
                    "description_data": [
                        {
                            "lang": "eng",
                            "value": "Multiple PHP remote file inclusion vulnerabilities in Cantico Ovidentia 5.8.0 allow remote attackers to execute arbitrary PHP code via a URL in the babInstallPath parameter in (1) index.php, (2) topman.php, (3) approb.php, (4) vacadmb.php, (5) vacadma.php, (6) vacadm.php, (7) statart.php, (8) search.php, (9) posts.php, (10) options.php, (11) login.php, (12) frchart.php, (13) flbchart.php, (14) fileman.php, (15) faq.php, (16) event.php, (17) directory.php, (18) articles.php, (19) artedit.php, (20) calday.php, and additional unspecified PHP scripts.  NOTE: the utilit.php vector is already covered by CVE-2005-1964."
                        }
                    ]
                },
                "problemtype": {
                    "problemtype_data": [
                        {
                            "description": [
                                {
                                    "lang": "eng",
                                    "value": "n/a"
                                }
                            ]
                        }
                    ]
                },
                "references": {
                    "reference_data": [
                        {
                            "name": "27223",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27223"
                        },
                        {
                            "name": "ovidentia-multiple-scripts-file-include(26981)",
                            "refsource": "XF",
                            "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/26981"
                        },
                        {
                            "name": "27228",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27228"
                        },
                        {
                            "name": "27215",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27215"
                        },
                        {
                            "name": "27224",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27224"
                        },
                        {
                            "name": "27214",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27214"
                        },
                        {
                            "name": "1033",
                            "refsource": "SREASON",
                            "url": "http://securityreason.com/securityalert/1033"
                        },
                        {
                            "name": "27216",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27216"
                        },
                        {
                            "name": "27212",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27212"
                        },
                        {
                            "name": "27222",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27222"
                        },
                        {
                            "name": "27221",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27221"
                        },
                        {
                            "name": "27226",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27226"
                        },
                        {
                            "name": "27220",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27220"
                        },
                        {
                            "name": "27225",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27225"
                        },
                        {
                            "name": "27211",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27211"
                        },
                        {
                            "name": "27229",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27229"
                        },
                        {
                            "name": "18232",
                            "refsource": "BID",
                            "url": "http://www.securityfocus.com/bid/18232"
                        },
                        {
                            "name": "20070114 Ovidentia 5.6x Series Remote File &#304;nclude",
                            "refsource": "BUGTRAQ",
                            "url": "http://www.securityfocus.com/archive/1/456893/100/200/threaded"
                        },
                        {
                            "name": "27209",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27209"
                        },
                        {
                            "name": "27218",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27218"
                        },
                        {
                            "name": "27217",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27217"
                        },
                        {
                            "name": "27227",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27227"
                        },
                        {
                            "name": "27213",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27213"
                        },
                        {
                            "name": "20060531 multiple file inclusion exploits in ovidentia v5.8.0",
                            "refsource": "BUGTRAQ",
                            "url": "http://www.securityfocus.com/archive/1/435590/100/0/threaded"
                        },
                        {
                            "name": "27219",
                            "refsource": "OSVDB",
                            "url": "http://www.osvdb.org/27219"
                        },
                        {
                            "name": "20070209 Ovidentia Exploit Codeds",
                            "refsource": "BUGTRAQ",
                            "url": "http://www.securityfocus.com/archive/1/459572/100/0/threaded"
                        }
                    ]
                }
            }
        },
        "adp": [
            {
                "providerMetadata": {
                    "orgId": "af854a3a-2127-422b-91ae-364da2661108",
                    "shortName": "CVE",
                    "dateUpdated": "2024-08-07T18:06:26.664Z"
                },
                "title": "CVE Program Container",
                "references": [
                    {
                        "name": "27223",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27223"
                    },
                    {
                        "name": "ovidentia-multiple-scripts-file-include(26981)",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_XF",
                            "x_transferred"
                        ],
                        "url": "https://exchange.xforce.ibmcloud.com/vulnerabilities/26981"
                    },
                    {
                        "name": "27228",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27228"
                    },
                    {
                        "name": "27215",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27215"
                    },
                    {
                        "name": "27224",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27224"
                    },
                    {
                        "name": "27214",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27214"
                    },
                    {
                        "name": "1033",
                        "tags": [
                            "third-party-advisory",
                            "x_refsource_SREASON",
                            "x_transferred"
                        ],
                        "url": "http://securityreason.com/securityalert/1033"
                    },
                    {
                        "name": "27216",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27216"
                    },
                    {
                        "name": "27212",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27212"
                    },
                    {
                        "name": "27222",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27222"
                    },
                    {
                        "name": "27221",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27221"
                    },
                    {
                        "name": "27226",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27226"
                    },
                    {
                        "name": "27220",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27220"
                    },
                    {
                        "name": "27225",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27225"
                    },
                    {
                        "name": "27211",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27211"
                    },
                    {
                        "name": "27229",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27229"
                    },
                    {
                        "name": "18232",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_BID",
                            "x_transferred"
                        ],
                        "url": "http://www.securityfocus.com/bid/18232"
                    },
                    {
                        "name": "20070114 Ovidentia 5.6x Series Remote File &#304;nclude",
                        "tags": [
                            "mailing-list",
                            "x_refsource_BUGTRAQ",
                            "x_transferred"
                        ],
                        "url": "http://www.securityfocus.com/archive/1/456893/100/200/threaded"
                    },
                    {
                        "name": "27209",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27209"
                    },
                    {
                        "name": "27218",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27218"
                    },
                    {
                        "name": "27217",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27217"
                    },
                    {
                        "name": "27227",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27227"
                    },
                    {
                        "name": "27213",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27213"
                    },
                    {
                        "name": "20060531 multiple file inclusion exploits in ovidentia v5.8.0",
                        "tags": [
                            "mailing-list",
                            "x_refsource_BUGTRAQ",
                            "x_transferred"
                        ],
                        "url": "http://www.securityfocus.com/archive/1/435590/100/0/threaded"
                    },
                    {
                        "name": "27219",
                        "tags": [
                            "vdb-entry",
                            "x_refsource_OSVDB",
                            "x_transferred"
                        ],
                        "url": "http://www.osvdb.org/27219"
                    },
                    {
                        "name": "20070209 Ovidentia Exploit Codeds",
                        "tags": [
                            "mailing-list",
                            "x_refsource_BUGTRAQ",
                            "x_transferred"
                        ],
                        "url": "http://www.securityfocus.com/archive/1/459572/100/0/threaded"
                    }
                ]
            }
        ]
    },
    "cveMetadata": {
        "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca",
        "assignerShortName": "mitre",
        "cveId": "CVE-2006-2811",
        "datePublished": "2006-06-05T17:00:00",
        "dateReserved": "2006-06-05T00:00:00",
        "dateUpdated": "2024-08-07T18:06:26.664Z",
        "state": "PUBLISHED"
    },
    "dataType": "CVE_RECORD",
    "dataVersion": "5.1"
}