CVE-2005-0689

The Includer - Command Injection

Title source: llm
STIX 2.1

Description

includer.cgi in The Includer allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the URL or (2) the template parameter.

Exploits (3)

exploitdb WORKING POC VERIFIED
by K-C0d3r · perlwebappscgi
https://www.exploit-db.com/exploits/923
exploitdb WORKING POC VERIFIED
by GreenwooD · perlwebappscgi
https://www.exploit-db.com/exploits/922
exploitdb WORKING POC VERIFIED
by Francisco Alisson · textwebappscgi
https://www.exploit-db.com/exploits/862

Scores

EPSS 0.0775
EPSS Percentile 92.0%

Details

Status published
Products (2)
jimmy/the_includer 1.0
jimmy/the_includer 1.1
Published Mar 07, 2005
Tracked Since Feb 18, 2026