Unrated severityNVD Advisory· Published Nov 10, 2006· Updated Apr 23, 2026
CVE-2006-5838
CVE-2006-5838
Description
PHP remote file inclusion vulnerability in lib/class.Database.php in NewP News Publication System 1.0.0, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the path parameter.
Affected products
1- cpe:2.3:a:newp:news_publication_system:1.0.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4News mentions
0No linked articles in our index yet.