VYPR
Unrated severityNVD Advisory· Published Jun 13, 2006· Updated Apr 16, 2026

CVE-2006-2982

CVE-2006-2982

Description

Multiple PHP remote file inclusion vulnerabilities in Enterprise Timesheet and Payroll Systems (EPS) 1.1 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the absolutepath parameter in (1) footer.php and (2) admin/footer.php.

Affected products

3
  • cpe:2.3:a:enterprise_payroll_systems:enterprise_payroll_systems:1.01_alpha:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:enterprise_payroll_systems:enterprise_payroll_systems:1.01_alpha:*:*:*:*:*:*:*
    • cpe:2.3:a:enterprise_payroll_systems:enterprise_payroll_systems:1.0_alpha:*:*:*:*:*:*:*
    • cpe:2.3:a:enterprise_payroll_systems:enterprise_payroll_systems:1.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.