Unrated severityNVD Advisory· Published Sep 25, 2006· Updated Apr 16, 2026
CVE-2006-4969
CVE-2006-4969
Description
Multiple PHP remote file inclusion vulnerabilities in WAHM E-Commerce Pie Cart Pro allow remote attackers to execute arbitrary PHP code via a URL in the Inc_Dir parameter in (1) affiliates.php, (2) orders.php, (3) events.php, (4) index.php, (5) articles.php, (6) faqs.php, (7) guestbook.php, (8) catalog.php, (9) wholesale.php, (10) weblinks.php, (11) certificates.php, (12) sitesearch.php, (13) contact.php, (14) sitemap.php, (15) search.php, (16) registry.php, or (17) error.php.
Affected products
1- cpe:2.3:a:wahm_e-commerce:pie_cart_pro:*:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
22- www.securityfocus.com/bid/20099nvdExploit
- secunia.com/advisories/22131nvd
- www.osvdb.org/29198nvd
- www.osvdb.org/29199nvd
- www.osvdb.org/29200nvd
- www.osvdb.org/29201nvd
- www.osvdb.org/29202nvd
- www.osvdb.org/29203nvd
- www.osvdb.org/29204nvd
- www.osvdb.org/29205nvd
- www.osvdb.org/29206nvd
- www.osvdb.org/29207nvd
- www.osvdb.org/29208nvd
- www.osvdb.org/29209nvd
- www.osvdb.org/29210nvd
- www.osvdb.org/29211nvd
- www.osvdb.org/29212nvd
- www.osvdb.org/29213nvd
- www.osvdb.org/29214nvd
- www.vupen.com/english/advisories/2006/3798nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/29023nvd
- www.exploit-db.com/exploits/2393nvd
News mentions
0No linked articles in our index yet.