CVE-2006-3843
Calendar Mambo Module 1.5.7 - Remote File Inclusion via absolute_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-3843. PoCs published by Matdhule.
AI-analyzed exploit summary The exploit describes a remote file inclusion vulnerability in the Calendar module for Mambo 1.5.7, allowing an attacker to include and execute arbitrary PHP code from a remote server. The provided URL demonstrates the attack vector but lacks executable code.
Description
PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.
Exploits (1)
The exploit describes a remote file inclusion vulnerability in the Calendar module for Mambo 1.5.7, allowing an attacker to include and execute arbitrary PHP code from a remote server. The provided URL demonstrates the attack vector but lacks executable code.