Vulnerabilities > CVE-2006-5103 - Remote File Include vulnerability in Bbsnew 2.0.1

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
bbsnew
exploit available

Summary

PHP remote file inclusion vulnerability in admin/index2.php in bbsNew 2.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the "right" parameter.

Vulnerable Configurations

Part Description Count
Application
Bbsnew
1

Exploit-Db

descriptionBBSNew 2.0.1 Index2.PHP Remote File Include Vulnerability. CVE-2006-5103. Webapps exploit for php platform
idEDB-ID:28672
last seen2016-02-03
modified2006-09-25
published2006-09-25
reporterRoot3r_H3ll
sourcehttps://www.exploit-db.com/download/28672/
titleBBSNew 2.0.1 Index2.PHP Remote File Include Vulnerability

Seebug

bulletinFamilyexploit
descriptionCVE-2006-5103 BBSNew Index2.PHP Remote File Include Vulnerability 成功利用这个漏洞可以让攻击者执行任意服务器端脚本代码进行电脑与特权的影响Web服务进程.这可能有助于擅自进入. bbsNew 2.0.1 暂无
idSSV:346
last seen2017-11-19
modified2006-10-31
published2006-10-31
reporterRoot
sourcehttps://www.seebug.org/vuldb/ssvid-346
titleBBSNew Index2.PHP Remote File Include Vulnerability