Vulnerabilities > CVE-2006-6568 - File Include vulnerability in Mxbb KB Mods 2.0.2
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
COMPLETE Integrity impact
COMPLETE Availability impact
COMPLETE Summary
Directory traversal vulnerability in includes/kb_constants.php in the Knowledge Base (mx_kb) 2.0.2 module for mxBB allows remote attackers to include arbitrary files via a .. (dot dot) sequence in the phpEx parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | mxBB Module kb_mods <= 2.0.2 Remote Inclusion Vulnerabilities. CVE-2006-6567,CVE-2006-6568. Webapps exploit for php platform |
file | exploits/php/webapps/2924.txt |
id | EDB-ID:2924 |
last seen | 2016-01-31 |
modified | 2006-12-12 |
platform | php |
port | |
published | 2006-12-12 |
reporter | 3l3ctric-Cracker |
source | https://www.exploit-db.com/download/2924/ |
title | mxBB Module kb_mods <= 2.0.2 - Remote Inclusion Vulnerabilities |
type | webapps |