>> PostNuke ADOdb "server.php" Test Script Remote Code Execution Issue
Title : PostNuke ADOdb "server.php" Test Script Remote Code Execution Issue VUPEN ID : VUPEN/ADV-2006-0105 CVE ID : CVE-2006-0146
Rated as : Moderate Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2006-01-09
Technical Description
A vulnerability has been identified in PostNuke, which could be exploited by remote attackers to execute arbitrary commands. This flaw is due to an input validation error in the "server.php" test script of ADOdb. For additional information, see : VUPEN/ADV-2006-0101