CVE-2006-5667
p-book < 1.17 - Remote File Inclusion via pb_lang Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5667. PoCs published by Matdhule.
AI-analyzed exploit summary This is an advisory detailing a remote file inclusion vulnerability in P-Book <= 1.17. The vulnerability allows arbitrary PHP code execution by manipulating the 'pb_lang' parameter in admin.php and pbook.php.
Description
Multiple PHP remote file inclusion vulnerabilities in P-Book 1.17 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the pb_lang parameter to (1) admin.php and (2) pbook.php.
Exploits (1)
This is an advisory detailing a remote file inclusion vulnerability in P-Book <= 1.17. The vulnerability allows arbitrary PHP code execution by manipulating the 'pb_lang' parameter in admin.php and pbook.php.