CVE-2006-4102
sqlitewebadmin < 0.1 - Remote File Inclusion via conf[classpath] Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-4102. PoCs published by SirDarckCat.
AI-analyzed exploit summary This is a writeup describing a Remote File Inclusion (RFI) vulnerability in SQLiteWebAdmin's 'tpl.inc.php' via the 'conf[classpath]' parameter. Exploitation requires 'register_globals=on' and allows remote code execution by including arbitrary scripts.
Description
PHP remote file inclusion vulnerability in tpl.inc.php in Falko Timme and Till Brehm SQLiteWebAdmin 0.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the conf[classpath] parameter.
Exploits (1)
This is a writeup describing a Remote File Inclusion (RFI) vulnerability in SQLiteWebAdmin's 'tpl.inc.php' via the 'conf[classpath]' parameter. Exploitation requires 'register_globals=on' and allows remote code execution by including arbitrary scripts.