Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-4034. PoCs published by Solpot.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in ModernBill 1.6 by manipulating the 'DIR' parameter to include arbitrary PHP code from external resources. The vulnerability arises from improper input validation in the 'config.php' file.
Description
PHP remote file inclusion vulnerability in include/html/config.php in ModernGigabyte ModernBill 1.6 allows remote attackers to execute arbitrary PHP code via a URL in the DIR parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in ModernBill 1.6 by manipulating the 'DIR' parameter to include arbitrary PHP code from external resources. The vulnerability arises from improper input validation in the 'config.php' file.