CVE-2006-2483
Squirrelcart <= 2.2.2 - Remote File Inclusion via cart_isp_root Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-2483. PoCs published by OLiBekaS.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Squirrelcart <= 2.2.0. The attacker can include a remote file via the 'cart_isp_root' parameter in 'cart_content.php', leading to potential remote code execution.
Description
PHP remote file inclusion vulnerability in cart_content.php in Squirrelcart 2.2.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cart_isp_root parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Squirrelcart <= 2.2.0. The attacker can include a remote file via the 'cart_isp_root' parameter in 'cart_content.php', leading to potential remote code execution.