CVE-2006-2928 | CMS-Bandits 2.5 td.php spaw_root file inclusion (EDB-1890 / XFDB-27001)
A vulnerability described as critical has been identified in CMS-Bandits 2.5. Impacted is an unknown function of the file td.php. Such manipulation of the argument spaw_root leads to file inclusion.
This vulnerability is listed as CVE-2006-2928. The attack may be performed from a remote location. In addition, an exploit is available.