CVE-2006-5506
28Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendepss 10%
exploitation probability
10%top 5% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Multiple PHP remote file inclusion vulnerabilities in WiClear 0.10 allow remote attackers to execute arbitrary PHP code via the path parameter in (1) inc/prepend.inc.php, (2) inc/lib/boxes.lib.php, (3) inc/lib/tools.lib.php, (4) tools/trackback/index.php, and (5) tools/utf8conversion/index.php in admin/; and (6) prepend.inc.php, (7) lib/boxes.lib.php, and (8) lib/history.lib.php in inc/.
Affected products
n/a · n/apublic PoCs found — 1✓ VexDay Proof
cve_reference✓ VexDay Proofwww.exploit-db.com/exploits/2624⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://secunia.com/advisories/22547https://exchange.xforce.ibmcloud.com/vulnerabilities/29720https://www.exploit-db.com/exploits/2624http://wiclear.free.fr/http://wiclear.free.fr/?Downloadhttp://www.osvdb.org/29942http://www.osvdb.org/29943http://www.osvdb.org/29944http://www.osvdb.org/29945http://www.osvdb.org/29946http://www.osvdb.org/29947http://www.osvdb.org/29948