CVE-2006-2182

albinator <2.0.8 - RCE

Title source: llm
STIX 2.1

Description

Multiple PHP remote file inclusion vulnerabilities in (1) eday.php, (2) eshow.php, or (3) forgot.php in albinator 2.0.8 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the Config_rootdir parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by webDEViL · perlwebappsphp
https://www.exploit-db.com/exploits/1744

Scores

EPSS 0.0779
EPSS Percentile 92.0%

Details

Status published
Products (1)
albinator/albinator 2.0.8
Published May 04, 2006
Tracked Since Feb 18, 2026