Vulnerabilities > CVE-2006-6568 - Unspecified vulnerability in Mxbb KB Mods 2.0.2
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN mxbb
exploit available
Summary
Directory traversal vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the phpEx parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | mxBB Module kb_mods <= 2.0.2 Remote Inclusion Vulnerabilities. CVE-2006-6567,CVE-2006-6568. Webapps exploit for php platform |
file | exploits/php/webapps/2924.txt |
id | EDB-ID:2924 |
last seen | 2016-01-31 |
modified | 2006-12-12 |
platform | php |
port | |
published | 2006-12-12 |
reporter | 3l3ctric-Cracker |
source | https://www.exploit-db.com/download/2924/ |
title | mxBB Module kb_mods <= 2.0.2 - Remote Inclusion Vulnerabilities |
type | webapps |
References
- http://secunia.com/advisories/23356
- http://secunia.com/advisories/23356
- http://www.securityfocus.com/bid/21577
- http://www.securityfocus.com/bid/21577
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30857
- https://exchange.xforce.ibmcloud.com/vulnerabilities/30857
- https://www.exploit-db.com/exploits/2924
- https://www.exploit-db.com/exploits/2924