CVE-2008-5066
Agares Media ThemeSiteScript 1.0 - Remote Code Execution via Frontpage Right PHP File Inclusion
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5066. PoCs published by DaRkLiFe.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in ThemeSiteScript v1.0. The vulnerability is due to unsanitized user input in the 'loadadminpage' parameter, allowing an attacker to include arbitrary remote files.
Description
PHP remote file inclusion vulnerability in upload/admin/frontpage_right.php in Agares Media ThemeSiteScript 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the loadadminpage parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in ThemeSiteScript v1.0. The vulnerability is due to unsanitized user input in the 'loadadminpage' parameter, allowing an attacker to include arbitrary remote files.