Unrated severityNVD Advisory· Published Sep 15, 2006· Updated Jun 16, 2026
CVE-2006-4827
CVE-2006-4827
Description
Multiple PHP remote file inclusion vulnerabilities in Vmist Downstat 1.8 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the art parameter to (1) admin.php, (2) chart.php, (3) modes.php, or (4) stats.php.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:a:vmist:downstat:*:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:vmist:downstat:*:*:*:*:*:*:*:*range: <=1.8
- cpe:2.3:a:vmist:downstat:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:vmist:downstat:1.3:*:*:*:*:*:*:*
- cpe:2.3:a:vmist:downstat:1.4:*:*:*:*:*:*:*
- cpe:2.3:a:vmist:downstat:1.5:*:*:*:*:*:*:*
- cpe:2.3:a:vmist:downstat:1.6:*:*:*:*:*:*:*
- cpe:2.3:a:vmist:downstat:1.7:*:*:*:*:*:*:*
- (no CPE)range: <=1.8
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.