phpbb-setmodules-file-include(29345)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/29345 CVE-2006-5209
phpBB Admin Topic Action Logging Mod 0.94b - Remote File Inclusion
Record summary
CVE-2006-5209 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
PHP remote file inclusion vulnerability in admin/admin_topic_action_logging.php in Admin Topic Action Logging Mod 0.95 and earlier, as used in phpBB 2.0 up to 2.0.21, allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBphpBB Admin Topic Action Logging Mod 0.94b - Remote File InclusionExploitDB exploitby SpiderZNot analyzed1 file
References
3nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2006-5209 2475exploit
https://www.exploit-db.com/exploits/2475