Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-4209. PoCs published by Philipp Niedziela.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in WEBInsta Mailing List Manager 1.3e. The vulnerability arises due to improper sanitization of the `cabsolute_path` parameter in `install/install3.php`, allowing remote code execution via crafted HTTP requests.
Description
PHP remote file inclusion vulnerability in install3.php in WEBInsta Mailing List Manager 1.3e allows remote attackers to execute arbitrary PHP code via a URL in the cabsolute_path parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in WEBInsta Mailing List Manager 1.3e. The vulnerability arises due to improper sanitization of the `cabsolute_path` parameter in `install/install3.php`, allowing remote code execution via crafted HTTP requests.