Vulnerabilities > CVE-2006-5166 - Remote File Include vulnerability in PHP Web Scripts Easy Banner Functions.PHP

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
php-web-scripts
exploit available

Summary

PHP remote file inclusion vulnerability in functions.php in PHP Web Scripts Easy Banner Free allows remote attackers to execute arbitrary PHP code via a URL in the s[phppath] parameter.

Vulnerable Configurations

Part Description Count
Application
Php_Web_Scripts
1

Exploit-Db

descriptionPHP Web Scripts Easy Banner Functions.PHP Remote File Include Vulnerability. CVE-2006-5166. Webapps exploit for php platform
idEDB-ID:28737
last seen2016-02-03
modified2006-10-02
published2006-10-02
reporterabu ahmed
sourcehttps://www.exploit-db.com/download/28737/
titlePHP Web Scripts Easy Banner Functions.PHP Remote File Include Vulnerability