CVE-2006-6553
mxbb_newssuite 1.03 - Remote File Inclusion via mx_root_path Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6553. PoCs published by 3l3ctric-Cracker.
AI-analyzed exploit summary This exploit targets a remote file inclusion vulnerability in mxBB newssuite Module v1.5. It allows an attacker to include a remote shell by manipulating the 'mx_root_path' parameter, leading to remote code execution.
Description
PHP remote file inclusion vulnerability in includes/newssuite_constants.php in the NewsSuite 1.03 module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the mx_root_path parameter.
Exploits (1)
This exploit targets a remote file inclusion vulnerability in mxBB newssuite Module v1.5. It allows an attacker to include a remote shell by manipulating the 'mx_root_path' parameter, leading to remote code execution.