CVE-2006-5126
PowerPortal 1.3a - Remote File Inclusion via index.php file_name[] Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5126. PoCs published by v1per-haCker.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in PowerPortal v1.3a via the 'file_name[]' parameter in index.php. The PoC allows an attacker to include and execute arbitrary remote files, potentially leading to remote code execution.
Description
PHP remote file inclusion vulnerability in index.php in John Himmelman (aka DaRk2k1) PowerPortal 1.3a allows remote attackers to execute arbitrary PHP code via a URL in the file_name[] parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in PowerPortal v1.3a via the 'file_name[]' parameter in index.php. The PoC allows an attacker to include and execute arbitrary remote files, potentially leading to remote code execution.