CVE-2006-6726
inertianews 0.02 beta - Remote Code Execution via inews_path Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6726. PoCs published by bd0rk.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in inertianews 0.02b due to improper input validation in the 'inews_path' parameter. An attacker can include arbitrary remote files, potentially leading to remote code execution.
Description
PHP remote file inclusion vulnerability in inertianews_main.php in inertianews 0.02 beta allows remote attackers to execute arbitrary PHP code via a URL in the inews_path parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in inertianews 0.02b due to improper input validation in the 'inews_path' parameter. An attacker can include arbitrary remote files, potentially leading to remote code execution.