CVE-2006-7068
CliServ Web Community <= 0.65 - Remote File Inclusion via cl_headers Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-7068. PoCs published by Kacper.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in CliServ Web Community <= 0.65. The vulnerability allows an attacker to include arbitrary remote files via the 'cl_headers' parameter in menu.php3 and login.php3, leading to potential remote code execution.
Description
PHP remote file inclusion vulnerability in CliServ Web Community 0.65 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cl_headers parameter to (1) menu.php3 and (2) login.php3.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in CliServ Web Community <= 0.65. The vulnerability allows an attacker to include arbitrary remote files via the 'cl_headers' parameter in menu.php3 and login.php3, leading to potential remote code execution.