CVE-2006-5928
phpjobscheduler 3.0 - Remote File Inclusion via installed_config_file Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5928. PoCs published by Firewall.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in phpjobscheduler 3.0 by manipulating the 'installed_config_file' parameter in multiple scripts. The vulnerability allows an attacker to include arbitrary remote files, potentially leading to remote code execution.
Description
Multiple PHP remote file inclusion vulnerabilities in Phpjobscheduler 3.0 allow remote attackers to execute arbitrary PHP code via a URL in the installed_config_file parameter to (1) add-modify.php, (2) delete.php, (3) modify.php, and (4) phpjobscheduler.php.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in phpjobscheduler 3.0 by manipulating the 'installed_config_file' parameter in multiple scripts. The vulnerability allows an attacker to include arbitrary remote files, potentially leading to remote code execution.