CVE-2004-2018
Php-Nuke 6.x-7.3 - Remote File Inclusion via modpath Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-2018. PoCs published by waraxe.
AI-analyzed exploit summary This exploit demonstrates a file inclusion vulnerability in PHP-Nuke via the 'modpath' parameter, allowing remote attackers to execute arbitrary code by including malicious files from external sources.
Description
PHP remote file inclusion vulnerability in index.php in Php-Nuke 6.x through 7.3 allows remote attackers to execute arbitrary PHP code by modifying the modpath parameter to reference a URL on a remote web server that contains the code.
Exploits (1)
This exploit demonstrates a file inclusion vulnerability in PHP-Nuke via the 'modpath' parameter, allowing remote attackers to execute arbitrary code by including malicious files from external sources.