CVE-2006-3185
CMS Faethon 1.3.2 - Remote File Inclusion via mainpath Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-3185. PoCs published by M.Hasran Addahroni.
AI-analyzed exploit summary The code describes a remote file inclusion vulnerability in CMS Faethon due to improper input sanitization. An attacker can exploit this by injecting a remote URL into the 'mainpath' parameter, leading to arbitrary code execution.
Description
PHP remote file inclusion vulnerability in data/header.php in CMS Faethon 1.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the mainpath parameter.
Exploits (1)
The code describes a remote file inclusion vulnerability in CMS Faethon due to improper input sanitization. An attacker can exploit this by injecting a remote URL into the 'mainpath' parameter, leading to arbitrary code execution.