Files
CVEs-PoC/2006/CVE-2006-5918.md
T
2024-06-18 02:51:15 +02:00

18 lines
772 B
Markdown

### [CVE-2006-5918](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-5918)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Unrestricted file upload vulnerability in RapidKill (aka PHP Rapid Kill) 5.7 Pro, and certain other versions, allows remote attackers to upload and execute arbitrary PHP scripts via the "Link to Download" field. NOTE: it is possible that the field value is restricted to files on specific public web sites.
### POC
#### Reference
- http://securityreason.com/securityalert/1862
#### Github
No PoCs found on GitHub currently.