CVE-2006-5062
PBLang < 4.66z - Remote File Inclusion via temppath Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5062. PoCs published by SHiKaA.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in PBLang <= v4.66z due to improper input validation in the 'temppath' parameter. An attacker can include arbitrary remote PHP files, leading to remote code execution.
Description
PHP remote file inclusion vulnerability in templates/pb/language/lang_nl.php in PBLang (PBL) 4.66z and earlier allows remote attackers to execute arbitrary PHP code via a URL in the temppath parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in PBLang <= v4.66z due to improper input validation in the 'temppath' parameter. An attacker can include arbitrary remote PHP files, leading to remote code execution.