CVE-2006-6795
myPHPNuke My_eGallery 2.5.6 - Remote File Inclusion via basepath Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6795. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This exploit demonstrates a Remote File Include (RFI) vulnerability in the myPHPNuke Gallery Module. By manipulating the 'basepath' parameter, an attacker can include and execute arbitrary remote PHP code, leading to potential remote code execution (RCE).
Description
PHP remote file inclusion vulnerability in gallery/displayCategory.php in the My_eGallery 2.5.6 module in myPHPNuke (MPN) allows remote attackers to execute arbitrary PHP code via a URL in the basepath parameter.
Exploits (1)
This exploit demonstrates a Remote File Include (RFI) vulnerability in the myPHPNuke Gallery Module. By manipulating the 'basepath' parameter, an attacker can include and execute arbitrary remote PHP code, leading to potential remote code execution (RCE).