CVE-2006-0147

Source
https://nvd.nist.gov/vuln/detail/CVE-2006-0147
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2006-0147.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2006-0147
Related
Published
2006-01-09T23:03:00Z
Modified
2025-04-03T01:03:51Z
Summary
[none]
Details

Dynamic code evaluation vulnerability in tests/tmssql.php test script in ADOdb for PHP before 4.70, as used in multiple products including (1) Mantis, (2) PostNuke, (3) Moodle, (4) Cacti, (5) Xaraya, (6) PhpOpenChat, possibly (7) MAXdev MD-Pro, and (8) Simplog, allows remote attackers to execute arbitrary PHP functions via the do parameter, which is saved in a variable that is then executed as a function, as demonstrated using phpinfo.

References

Affected packages

Debian:11 / cacti

Package

Name
cacti
Purl
pkg:deb/debian/cacti?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.6d-1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:12 / cacti

Package

Name
cacti
Purl
pkg:deb/debian/cacti?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.6d-1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:13 / cacti

Package

Name
cacti
Purl
pkg:deb/debian/cacti?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.8.6d-1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:11 / libphp-adodb

Package

Name
libphp-adodb
Purl
pkg:deb/debian/libphp-adodb?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.72-0.1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:12 / libphp-adodb

Package

Name
libphp-adodb
Purl
pkg:deb/debian/libphp-adodb?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.72-0.1

Ecosystem specific

{
    "urgency": "medium"
}

Debian:13 / libphp-adodb

Package

Name
libphp-adodb
Purl
pkg:deb/debian/libphp-adodb?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.72-0.1

Ecosystem specific

{
    "urgency": "medium"
}