CVE-2006-7079
CRITICALexV2 content_management_system < 2.0.4.3 - Remote Code Execution via $xoopsOption['pagetype'] Variable Manipulation
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-7079. PoCs published by rgod.
AI-analyzed exploit summary This exploit leverages a vulnerability in exV2 <= 2.0.4.3 where the `extract()` function allows overwriting server variables, leading to remote command execution. It uses two methods depending on `register_globals` settings to write a malicious PHP file and execute commands via HTTP headers.
Description
Variable extraction vulnerability in include/common.php in exV2 2.0.4.3 and earlier allows remote attackers to overwrite arbitrary program variables and conduct directory traversal attacks to execute arbitrary code by modifying the $xoopsOption['pagetype'] variable.
Exploits (1)
This exploit leverages a vulnerability in exV2 <= 2.0.4.3 where the `extract()` function allows overwriting server variables, leading to remote command execution. It uses two methods depending on `register_globals` settings to write a malicious PHP file and execute commands via HTTP headers.
References (3)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H