CVE-2006-6284
Vikingboard 0.1.2 - Authenticated Directory Traversal via Admin.php Act Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6284. PoCs published by laurent gaffie.
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in Vikingboard 1.0.2, allowing attackers to access sensitive files like /etc/passwd via a crafted URL. It also mentions HTML injection vulnerabilities but lacks executable exploit code.
Description
Directory traversal vulnerability in admin.php in Vikingboard 0.1.2 allows remote authenticated administrators to include arbitrary files via a .. (dot dot) sequence in the act parameter.
Exploits (1)
The provided text describes a directory traversal vulnerability in Vikingboard 1.0.2, allowing attackers to access sensitive files like /etc/passwd via a crafted URL. It also mentions HTML injection vulnerabilities but lacks executable exploit code.