CVE-2006-5419
University of Glasgow Specimen Image Database - Remote File Inclusion via dir Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5419. PoCs published by Kw3[R]Ln.
AI-analyzed exploit summary The exploit describes a remote file inclusion vulnerability in SID software due to an unsanitized $dir variable when register_globals is enabled. It lacks actual exploit code but provides a proof-of-concept URL for exploitation.
Description
PHP remote file inclusion vulnerability in client.php in University of Glasgow Specimen Image Database (SID), when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter.
Exploits (1)
The exploit describes a remote file inclusion vulnerability in SID software due to an unsanitized $dir variable when register_globals is enabled. It lacks actual exploit code but provides a proof-of-concept URL for exploitation.