Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6154. PoCs published by Cold Zero.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in HSRS <= 1.0 (HIOX Star Rating System Script) via the 'addcode.php' file. The vulnerability allows an attacker to include arbitrary remote files by manipulating the 'hm' parameter.
Description
PHP remote file inclusion vulnerability in addcode.php in HIOX Star Rating System Script (HSRS) 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the hm parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in HSRS <= 1.0 (HIOX Star Rating System Script) via the 'addcode.php' file. The vulnerability allows an attacker to include arbitrary remote files by manipulating the 'hm' parameter.