Feed/CVE-2006-5511
CVE-2006-5511LOWCVSS 2.6

CVE-2006-5511

Published Oct 25, 2006·Updated Jun 16, 2026

NVD Description

Direct static code injection vulnerability in delete.php in JaxUltraBB (JUBB) 2.0, when register_globals is enabled, allows remote attackers to inject arbitrary web script, HTML, or PHP via the contents parameter, whose value is prepended to the file specified by the forum parameter.

CVSS Vector

AV:N/AC:H/Au:N/C:N/I:P/A:N

References

View on NVD Search GitHub Search Google

Get alerted for CVEs like this

Register your stack and get notified within minutes when a matching CVE drops.

Start monitoring free