CVE-2006-5251
Deep CMS 2.0a - Remote File Inclusion via ConfigDir Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5251. PoCs published by Crackers_Child.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Deep CMS 2.0a due to improper input sanitization. An attacker can execute arbitrary server-side script code by manipulating the 'ConfigDir' parameter in the URL.
Description
PHP remote file inclusion vulnerability in index.php in Deep CMS 2.0a allows remote attackers to execute arbitrary PHP code via a URL in the ConfigDir parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in Deep CMS 2.0a due to improper input sanitization. An attacker can execute arbitrary server-side script code by manipulating the 'ConfigDir' parameter in the URL.