CVE-2006-0171
OrjinWeb E-commerce - Remote File Inclusion via Page Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-0171. PoCs published by serxwebun.
AI-analyzed exploit summary The provided text describes a remote file inclusion vulnerability in Orjinweb, where unsanitized user input allows arbitrary PHP code execution. The example URL demonstrates how an attacker could include a remote file containing malicious code.
Description
PHP remote file include vulnerability in index.php in OrjinWeb E-commerce allows remote attackers to execute arbitrary code via a URL in the page parameter. NOTE: it is not clear, but OrjinWeb might be an application service, in which case it should not be included in CVE.
Exploits (1)
The provided text describes a remote file inclusion vulnerability in Orjinweb, where unsanitized user input allows arbitrary PHP code execution. The example URL demonstrates how an attacker could include a remote file containing malicious code.