CVE-2006-7135
PHP Poll Creator 1.04 - Remote File Inclusion via relativer_pfad Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-7135. PoCs published by ThE-WoLf-KsA.
AI-analyzed exploit summary This exploit targets a remote file include vulnerability in phpPC <= 1.03 RC1 by injecting a malicious URL into the 'relativer_pfad' parameter. It uses a GUI to facilitate the attack and executes arbitrary commands via the included shell.
Description
PHP remote file inclusion vulnerability in lib/functions.inc.php in PHP Poll Creator (phpPC) 1.04 allows remote attackers to execute arbitrary PHP code via a URL in the relativer_pfad parameter, a different vector and version than CVE-2005-1755. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This exploit targets a remote file include vulnerability in phpPC <= 1.03 RC1 by injecting a malicious URL into the 'relativer_pfad' parameter. It uses a GUI to facilitate the attack and executes arbitrary commands via the included shell.