Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-5539. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Uber Project Document Management System's secure.php. The vulnerability arises from improper sanitization of the cfg[homepath] parameter, allowing an attacker to include arbitrary remote files.
Description
PHP remote file inclusion vulnerability in login/secure.php in UeberProject Management System 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfg[homepath] parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in Uber Project Document Management System's secure.php. The vulnerability arises from improper sanitization of the cfg[homepath] parameter, allowing an attacker to include arbitrary remote files.