Record summary

CVE-2006-4823 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

PHP remote file inclusion vulnerability in scripts/news_page.php in Reamday Enterprises Magic News Pro 1.0.3 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the script_path parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBMagic News Pro 1.0.3 - 'script_path' Remote File InclusionExploitDB exploitby Saudi HackrzNot analyzed1 file
ExploitDB

PoC details

References

8