CVE-2006-5436
FreeFAQ 1.0.e - Remote File Inclusion via faqpath Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5436. PoCs published by Alireza Ahari.
AI-analyzed exploit summary This exploit targets a remote file inclusion vulnerability in Free Faq 1.0.e by injecting a malicious URL into the 'faqpath' parameter, allowing arbitrary command execution via a remote shell script. The PoC uses Perl to send HTTP requests with attacker-controlled input.
Description
PHP remote file inclusion vulnerability in index.php in FreeFAQ 1.0.e allows remote attackers to execute arbitrary PHP code via a URL in the faqpath parameter.
Exploits (1)
This exploit targets a remote file inclusion vulnerability in Free Faq 1.0.e by injecting a malicious URL into the 'faqpath' parameter, allowing arbitrary command execution via a remote shell script. The PoC uses Perl to send HTTP requests with attacker-controlled input.