CVE-2006-1955
RechnungsZentrale V2 1.1.3 - Remote File Inclusion via rootpath Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-1955. PoCs published by GroundZero Security.
AI-analyzed exploit summary This is a writeup describing remote file inclusion and SQL injection vulnerabilities in RechnungsZentrale V2. It provides example URLs and payloads but does not include executable exploit code.
Description
PHP remote file inclusion vulnerability in authent.php4 in Nicolas Fischer (aka NFec) RechnungsZentrale V2 1.1.3, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via a URL in the rootpath parameter.
Exploits (1)
This is a writeup describing remote file inclusion and SQL injection vulnerabilities in RechnungsZentrale V2. It provides example URLs and payloads but does not include executable exploit code.