CVE-2005-0931

The Includer 1.0 and 1.1 - Remote File Inclusion

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-0931. PoCs published by hoang yen.

AI-analyzed exploit summary The provided text describes a remote file inclusion vulnerability in 'The Includer' software, allowing arbitrary server-side script execution via a manipulated 'page' parameter. No actual exploit code is present, only a description and example URL.

Description

PHP remote file inclusion vulnerability in The Includer 1.0 and 1.1 allows remote attackers to execute arbitrary PHP code.

Exploits (1)

exploitdb WRITEUP VERIFIED
by hoang yen · textwebappsphp
https://www.exploit-db.com/exploits/25314

The provided text describes a remote file inclusion vulnerability in 'The Includer' software, allowing arbitrary server-side script execution via a manipulated 'page' parameter. No actual exploit code is present, only a description and example URL.

Classification
Writeup 80%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: The Includer (all versions)
No auth needed
Prerequisites: Web server with 'The Includer' installed · Remote file inclusion enabled
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12926

Scores

EPSS 0.0214
EPSS Percentile 80.2%

Details

Status published
Products (2)
jimmy/the_includer 1.0
jimmy/the_includer 1.1
Published Mar 29, 2005
Tracked Since Feb 18, 2026