Unrated severityNVD Advisory· Published Apr 20, 2006· Updated Apr 16, 2026
CVE-2006-1890
CVE-2006-1890
Description
Multiple PHP remote file inclusion vulnerabilities in myWebland myEvent 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the myevent_path parameter in (1) event.php and (2) initialize.php. NOTE: vector 2 was later reported to affect 1.4 as well.
Affected products
2Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
11- www.securityfocus.com/bid/17575nvdExploit
- www.vupen.com/english/advisories/2006/1384nvdVendor Advisory
- secunia.com/advisories/19680nvd
- securityreason.com/securityalert/726nvd
- securityreason.com/securityalert/767nvd
- securitytracker.com/idnvd
- www.osvdb.org/24722nvd
- www.osvdb.org/24723nvd
- www.securityfocus.com/archive/1/431125/100/0/threadednvd
- exchange.xforce.ibmcloud.com/vulnerabilities/25882nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/28347nvd
News mentions
0No linked articles in our index yet.