CVE-2005-1054
ModernBill < 4.3.0 - Remote File Inclusion via DIR Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-1054. PoCs published by GulfTech Security.
AI-analyzed exploit summary This is a writeup describing a remote file include vulnerability in ModernBill 4.3 and prior versions. The vulnerability allows an attacker to include a remote script via the 'news.php' script by manipulating the 'DIR' parameter.
Description
PHP remote file inclusion vulnerability in news.php in ModernBill 4.3.0 and earlier allows remote attackers to execute arbitrary PHP code by modifying the DIR parameter to reference a URL on a remote web server that contains the code.
Exploits (1)
This is a writeup describing a remote file include vulnerability in ModernBill 4.3 and prior versions. The vulnerability allows an attacker to include a remote script via the 'news.php' script by manipulating the 'DIR' parameter.