CVE-2006-4115
PgMarket 2.2.3 - Remote File Inclusion via CFG[libdir] Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-4115. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in PgMarket 2.2.3 by manipulating the CFG[libdir] parameter to include a remote file. The PoC provides a URL to exploit the vulnerability.
Description
PHP remote file inclusion vulnerability in common.inc.php in PgMarket 2.2.3, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via the CFG[libdir] parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in PgMarket 2.2.3 by manipulating the CFG[libdir] parameter to include a remote file. The PoC provides a URL to exploit the vulnerability.