CVE-2006-6202
NukeAI 0.0.3 Beta - Remote File Inclusion via AIbasedir Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6202. PoCs published by DeltahackingTEAM.
AI-analyzed exploit summary This exploit targets a remote code execution vulnerability in nukeai beta3 by injecting a PHP shell into the 'util.php' script via unsanitized input. It then allows command execution through the created shell file.
Description
PHP remote file inclusion vulnerability in modules/NukeAI/util.php in the NukeAI 0.0.3 Beta module for PHP-Nuke, aka Program E is an AIML chatterbot, allows remote attackers to execute arbitrary PHP code via a URL in the AIbasedir parameter.
Exploits (1)
This exploit targets a remote code execution vulnerability in nukeai beta3 by injecting a PHP shell into the 'util.php' script via unsanitized input. It then allows command execution through the created shell file.