Vulnerabilities > CVE-2006-5918 - Unspecified vulnerability in PHP Rapid Kill PHP Rapid Kill 5.7Pro

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
php-rapid-kill
exploit available

Summary

Unrestricted file upload vulnerability in RapidKill (aka PHP Rapid Kill) 5.7 Pro, and certain other versions, allows remote attackers to upload and execute arbitrary PHP scripts via the "Link to Download" field. NOTE: it is possible that the field value is restricted to files on specific public web sites.

Vulnerable Configurations

Part Description Count
Application
Php_Rapid_Kill
1

Exploit-Db

descriptionPHP RapidKill Pro 5.x Shell Upload Vulnerability. CVE-2006-5918. Webapps exploit for php platform
idEDB-ID:12272
last seen2016-02-01
modified2010-04-17
published2010-04-17
reporterDigitALL
sourcehttps://www.exploit-db.com/download/12272/
titlePHP RapidKill Pro 5.x Shell Upload Vulnerability