CVE-2006-4322
EstateAgent Component for Mambo - Remote File Inclusion via mosConfig_absolute_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-4322. PoCs published by O.U.T.L.A.W.
AI-analyzed exploit summary The provided text describes a retired remote file inclusion vulnerability in the Mambo EstateAgent component, which was deemed non-exploitable. No functional exploit code is present, only a description and a retired BID reference.
Description
PHP remote file inclusion vulnerability in estateagent.php in the EstateAgent component (com_estateagent) for Mambo, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Exploits (1)
The provided text describes a retired remote file inclusion vulnerability in the Mambo EstateAgent component, which was deemed non-exploitable. No functional exploit code is present, only a description and a retired BID reference.