Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6644. PoCs published by ajann.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in mxBB Module Meeting <= 1.1.2 due to improper input validation in meeting_constants.php. An attacker can include arbitrary remote files by manipulating the module_root_path parameter.
Description
PHP remote file inclusion vulnerability in pages/meeting_constants.php in the Meeting (mx_meeting) 1.1.2 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in mxBB Module Meeting <= 1.1.2 due to improper input validation in meeting_constants.php. An attacker can include arbitrary remote files by manipulating the module_root_path parameter.