CVE-2006-6526
gizzar < 2002-16-03 - Remote File Inclusion via basePath Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6526. PoCs published by DeltahackingTEAM.
AI-analyzed exploit summary This Perl script exploits a Remote File Inclusion (RFI) vulnerability in Gizzar CMS by injecting a remote shell via the 'basePath' parameter. It allows command execution through a specified command variable in a PHP shell.
Description
PHP remote file inclusion vulnerability in index.php in Gizzar 03162002 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the basePath parameter.
Exploits (1)
This Perl script exploits a Remote File Inclusion (RFI) vulnerability in Gizzar CMS by injecting a remote shell via the 'basePath' parameter. It allows command execution through a specified command variable in a PHP shell.