CVE-2006-3955
MiniBB Forum 1.5a - Remote File Inclusion via absolute_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-3955. PoCs published by AG-Spider.
AI-analyzed exploit summary The provided text describes a remote file inclusion vulnerability in MiniBB 1.5a due to improper input sanitization. It outlines the potential for arbitrary remote file inclusion and execution of malicious PHP code.
Description
Multiple PHP remote file inclusion vulnerabilities in MiniBB Forum 1.5a allow remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter to (1) news.php, (2) search.php, or (3) whosOnline.php.
Exploits (1)
The provided text describes a remote file inclusion vulnerability in MiniBB 1.5a due to improper input sanitization. It outlines the potential for arbitrary remote file inclusion and execution of malicious PHP code.