CVE-2005-4211
phpCOIN 1.2.2 - Remote File Inclusion via $_CCFG[_PKG_PATH_DBSE] Variable
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4211. PoCs published by [email protected].
AI-analyzed exploit summary The code describes a file include vulnerability in PhpCOIN due to improper input sanitization, allowing remote or local file inclusion via the `_CCFG[_PKG_PATH_DBSE]` parameter. No actual exploit code is provided, only a description and example URL.
Description
PHP remote file inclusion vulnerability in coin_includes/db.php in phpCOIN 1.2.2 allows remote attackers to execute arbitrary PHP code via a URL in the $_CCFG[_PKG_PATH_DBSE] variable.
Exploits (1)
The code describes a file include vulnerability in PhpCOIN due to improper input sanitization, allowing remote or local file inclusion via the `_CCFG[_PKG_PATH_DBSE]` parameter. No actual exploit code is provided, only a description and example URL.