Vulnerabilities > CVE-2006-0786 - Remote Security vulnerability in PHPKIT

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
phpkit
nessus
exploit available

Summary

Incomplete blacklist vulnerability in include.php in PHPKIT 1.6.1 Release 2 and earlier, with allow_url_fopen enabled, allows remote attackers to conduct PHP remote file include attacks via a path parameter that specifies a (1) UNC share or (2) ftps URL, which bypasses the check for "http://", "ftp://", and "https://" URLs.

Vulnerable Configurations

Part Description Count
Application
Phpkit
1

Exploit-Db

descriptionPHPKIT <= 1.6.1R2 (filecheck) Remote Commands Execution Exploit. CVE-2006-0786. Webapps exploit for php platform
idEDB-ID:1501
last seen2016-01-31
modified2006-02-16
published2006-02-16
reporterrgod
sourcehttps://www.exploit-db.com/download/1501/
titlePHPKIT <= 1.6.1R2 filecheck Remote Commands Execution Exploit

Nessus

NASL familyCGI abuses
NASL idPHPKIT_MULTIPLE_FLAWS.NASL
descriptionThe remote host is running PHP-Kit, an open source content management system written in PHP. The remote version of this software is vulnerable to multiple remote and local code execution, SQL injection and cross-site scripting flaws.
last seen2020-06-01
modified2020-06-02
plugin id15784
published2004-11-22
reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
sourcehttps://www.tenable.com/plugins/nessus/15784
titlePHP-Kit <= 1.6.1 RC2 Multiple Vulnerabilities