CVE-2006-0810

critical

Description

Unspecified vulnerability in config.php in Skate Board 0.9 allows remote authenticated administrators to execute arbitrary PHP code by causing certain variables in config.php to be modified, possibly due to XSS or direct static code injection.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/24780

http://www.securityfocus.com/bid/16936

http://www.securityfocus.com/archive/1/426658/30/0/threaded

http://www.osvdb.org/23304

http://securityreason.com/securityalert/540

http://secunia.com/advisories/18978

http://evuln.com/vulns/84/summary.html

Details

Source: Mitre, NVD

Published: 2006-02-21

Updated: 2026-04-16

Risk Information

CVSS v2

Base Score: 3.5

Vector: CVSS2#AV:N/AC:M/Au:S/C:N/I:P/A:N

Severity: Low

CVSS v3

Base Score: 9.1

Vector: CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Severity: Critical

EPSS

EPSS: 0.0042