CVE-2006-3930
a6mambohelpdesk < 1.2 - Remote File Inclusion via mosConfig_live_site Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-3930. PoCs published by Dr.Jr7.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in the a6mambohelpdesk Mambo Component <= 18RC1. The vulnerability allows an attacker to include arbitrary remote files by manipulating the 'mosConfig_live_site' parameter.
Description
PHP remote file inclusion vulnerability in admin.a6mambohelpdesk.php in a6mambohelpdesk Mambo Component 18RC1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in the a6mambohelpdesk Mambo Component <= 18RC1. The vulnerability allows an attacker to include arbitrary remote files by manipulating the 'mosConfig_live_site' parameter.