CVE-2006-6648
planetluc.com RateMe < 1.3.2 - Remote File Inclusion via pathtoscript Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6648. PoCs published by Al7ejaz Hacker.
AI-analyzed exploit summary This is a writeup describing a Remote File Include (RFI) vulnerability in RateMe's main.inc.php. The exploit details how an attacker can include arbitrary remote files by manipulating the 'pathtoscript' parameter.
Description
PHP remote file inclusion vulnerability in main.inc.php in planetluc.com RateMe 1.3.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the pathtoscript parameter.
Exploits (1)
This is a writeup describing a Remote File Include (RFI) vulnerability in RateMe's main.inc.php. The exploit details how an attacker can include arbitrary remote files by manipulating the 'pathtoscript' parameter.