Vulnerabilities > CVE-2006-7091 - Remote File Include vulnerability in Hinton Design PHPht Topsites Free 1.022B

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
hinton-design
exploit available

Summary

PHP remote file inclusion vulnerability in config.php in phpht Topsites FREE 1.022b allows remote attackers to execute arbitrary PHP code via a URL in the fullpath parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Configurations

Part Description Count
Application
Hinton_Design
1

Exploit-Db

descriptionPHP TopSites FREE 1.022b Config.PHP Remote File Include Vulnerability. CVE-2006-7091. Webapps exploit for php platform
idEDB-ID:28791
last seen2016-02-03
modified2006-10-12
published2006-10-12
reporterLe CoPrA
sourcehttps://www.exploit-db.com/download/28791/
titlePHP TopSites FREE 1.022b Config.PHP Remote File Include Vulnerability