Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-5078. PoCs published by Drago84.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Polaring's general.php due to improper handling of the $_SESSION['dirMain'] variable. An attacker can inject a malicious URL to execute arbitrary code.
Description
PHP remote file inclusion vulnerability in view/general.php in Kristian Niemi Polaring 00.04.03 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the _SESSION[dirMain] parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Polaring's general.php due to improper handling of the $_SESSION['dirMain'] variable. An attacker can inject a malicious URL to execute arbitrary code.