CVE-2006-5831
All In One Control Panel <1.3.007 - Remote Code Execution
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5831. PoCs published by laurent gaffie.
AI-analyzed exploit summary The exploit demonstrates a remote file inclusion vulnerability in All In One Control Panel (AIOCP) due to insufficient input validation. An attacker can include arbitrary remote files without authentication via the 'load_page' parameter in the admin interface.
Description
PHP remote file inclusion vulnerability in admin/code/index.php in All In One Control Panel (AIOCP) 1.3.007 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the load_page parameter.
Exploits (1)
The exploit demonstrates a remote file inclusion vulnerability in All In One Control Panel (AIOCP) due to insufficient input validation. An attacker can include arbitrary remote files without authentication via the 'load_page' parameter in the admin interface.