Vulnerabilities > CVE-2006-7135 - Remote Security vulnerability in PHP Poll Creator PHP Poll Creator 1.04

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
php-poll-creator
exploit available

Summary

PHP remote file inclusion vulnerability in lib/functions.inc.php in PHP Poll Creator (phpPC) 1.04 allows remote attackers to execute arbitrary PHP code via a URL in the relativer_pfad parameter, a different vector and version than CVE-2005-1755. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

Vulnerable Configurations

Part Description Count
Application
Php_Poll_Creator
1

Exploit-Db

descriptionphpPC <= 1.03 RC1 (/lib/functions.inc.php) Remote File Include Exploit. CVE-2006-7135. Webapps exploit for php platform
idEDB-ID:2491
last seen2016-01-31
modified2006-10-08
published2006-10-08
reporterThE-WoLf-KsA
sourcehttps://www.exploit-db.com/download/2491/
titlephpPC <= 1.03 RC1 /lib/functions.inc.php Remote File Include Exploit