Vulnerabilities > CVE-2006-4121 - Remote File Include vulnerability in See-Commerce 1.0.625

047910
CVSS 5.1 - MEDIUM
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
high complexity
see-commerce
exploit available

Summary

PHP remote file inclusion vulnerability in owimg.php3 in See-Commerce 1.0.625 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.

Vulnerable Configurations

Part Description Count
Application
See-Commerce
1

Exploit-Db

descriptionSee-Commerce <= 1.0.625 (owimg.php3) Remote Include Vulnerability. CVE-2006-4121. Webapps exploit for php platform
fileexploits/php/webapps/2155.txt
idEDB-ID:2155
last seen2016-01-31
modified2006-08-09
platformphp
port
published2006-08-09
reporterDrago84
sourcehttps://www.exploit-db.com/download/2155/
titleSee-Commerce <= 1.0.625 owimg.php3 Remote Include Vulnerability
typewebapps