CVE detail
CVE-2006-4329 — CVE-2006-4329
Published 2006-08-24 · Modified 2026-06-16 · Vendor shadows_rising_rpg · Product shadows_rising_rpg · Source nvd
UNKNOWN
severity
CVSS-derived band
0.0785
EPSS probability
exploitation probability, 30d
94.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
Multiple PHP remote file inclusion vulnerabilities in Shadows Rising RPG (Pre-Alpha) 0.0.5b and earlier allow remote attackers to execute arbitrary PHP code via a URL in the CONFIG[gameroot] parameter to (1) core/includes/security.inc.php, (2) core/includes/smarty.inc.php, (3) qcms/includes/smarty.inc.php or (4) qlib/smarty.inc.php.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References