CVE-2006-0565

Gerrit VAN Aaken Loudblog < 0.4 - Code Injection

Title source: rule

Description

PHP remote file include vulnerability in inc/backend_settings.php in Loudblog 0.4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the $GLOBALS[path] parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by rgod · phpwebappsphp
https://www.exploit-db.com/exploits/1467

Scores

EPSS 0.1757
EPSS Percentile 95.1%

Details

CWE
CWE-94
Status published
Products (4)
gerrit_van_aaken/loudblog 0.1
gerrit_van_aaken/loudblog 0.2
gerrit_van_aaken/loudblog 0.3
gerrit_van_aaken/loudblog < 0.4
Published Feb 06, 2006
Tracked Since Feb 18, 2026