CVE-2006-4121
See-Commerce 1.0.625 - Remote File Inclusion via owimg.php3 path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-4121. PoCs published by Drago84.
AI-analyzed exploit summary This is a writeup describing a Remote File Inclusion (RFI) vulnerability in See-Commerce. The issue arises from insecure file inclusion in owimg.php3 via the 'path' parameter, allowing remote code execution if register_globals is enabled.
Description
PHP remote file inclusion vulnerability in owimg.php3 in See-Commerce 1.0.625 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.
Exploits (1)
This is a writeup describing a Remote File Inclusion (RFI) vulnerability in See-Commerce. The issue arises from insecure file inclusion in owimg.php3 via the 'path' parameter, allowing remote code execution if register_globals is enabled.