CVE-2006-5951
Exophpdesk 1.2 - Remote File Inclusion via lang_file Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5951. PoCs published by Firewall1954.
AI-analyzed exploit summary The code describes a remote file inclusion vulnerability in Exophpdesk 1.2 due to insufficient sanitization of user-supplied data in the 'lang_file' parameter of pipe.php. Exploitation could lead to remote code execution or other attacks.
Description
PHP remote file inclusion vulnerability in pipe.php in Exophpdesk 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the lang_file parameter.
Exploits (1)
The code describes a remote file inclusion vulnerability in Exophpdesk 1.2 due to insufficient sanitization of user-supplied data in the 'lang_file' parameter of pipe.php. Exploitation could lead to remote code execution or other attacks.