Vulnerabilities > CVE-2006-2998 - Remote File Include vulnerability in Free Qboard Free Qboard 1.1

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
free-qboard
exploit available

Summary

PHP remote file inclusion vulnerability in board/post.php in free QBoard 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the qb_path parameter.

Vulnerable Configurations

Part Description Count
Application
Free_Qboard
1

Exploit-Db

descriptionfree QBoard <= 1.1 (qb_path) Remote File Include Vulnerability. CVE-2006-2998. Webapps exploit for php platform
fileexploits/php/webapps/1899.txt
idEDB-ID:1899
last seen2016-01-31
modified2006-06-11
platformphp
port
published2006-06-11
reporterKacper
sourcehttps://www.exploit-db.com/download/1899/
titlefree QBoard <= 1.1 qb_path Remote File Include Vulnerability
typewebapps