CVE-2006-1767

nicecoder INDEXU 5.0.0-5.0.1 - Remote File Inclusion via theme_path and base_path Parameters

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2006-1767. PoCs published by SnIpEr_SA.

AI-analyzed exploit summary The provided text describes multiple remote file inclusion vulnerabilities in the 'indexu' application, allowing attackers to execute arbitrary PHP code by manipulating input parameters. It lists affected versions and example exploit URLs.

Description

Multiple PHP remote file inclusion vulnerabilities in nicecoder.com INDEXU 5.0.0 and 5.0.1 allow remote attackers to execute arbitrary PHP code via a URL in the theme_path parameter in (1) index.php, (2) become_editor.php, (3) add.php, (4) bad_link.php, (5) browse.php, (6) detail.php, (7) fav.php, (8) get_rated.php, (9) login.php, (10) mailing_list.php, (11) new.php, (12) modify.php, (13) pick.php, (14) power_search.php, (15) rating.php, (16) register.php, (17) review.php, (18) rss.php, (19) search.php, (20) send_pwd.php, (21) sendmail.php, (22) tell_friend.php, (23) top_rated.php, (24) user_detail.php, and (25) user_search.php; and the (26) base_path parameter in invoice.php.

Exploits (2)

exploitdb WRITEUP VERIFIED
by SnIpEr_SA · textwebappsphp
https://www.exploit-db.com/exploits/27625

The provided text describes multiple remote file inclusion vulnerabilities in the 'indexu' application, allowing attackers to execute arbitrary PHP code by manipulating input parameters. It lists affected versions and example exploit URLs.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: indexu 5.0.0, 5.0.1
No auth needed
Prerequisites: Access to the vulnerable application · Ability to host malicious PHP code on a remote server
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC
webappsphp
https://www.exploit-db.com/exploits/1925

This exploit demonstrates a remote file inclusion vulnerability in INDEXU v5.0.1, where the `admin_template_path` parameter is used to include arbitrary remote files. The vulnerability affects multiple admin scripts, allowing an attacker to execute malicious code by manipulating the parameter.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: INDEXU v5.0.1
No auth needed
Prerequisites: Access to the vulnerable admin scripts · Ability to host a malicious file on a remote server
devstral-2 · analyzed Feb 19, 2026 Full analysis →

References (20)

Core 20
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/430599/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28415
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28426
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17470
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28406
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28412
Exploit vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015891
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28419
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28410
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28417
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28427
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28422
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/24597
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/24596
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1016331
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28416
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28425
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28413
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/28409

Scores

EPSS 0.0812
EPSS Percentile 94.1%

Details

Status published
Products (2)
nicecoder/indexu 5.0
nicecoder/indexu 5.0.1
Published Apr 13, 2006
Tracked Since Feb 18, 2026