CVE-2006-4062
Dmitry Sheiko SAPID Shop <1.2 - RCE
Title source: llmDescription
PHP remote file inclusion vulnerability in usr/extensions/get_tree.inc.php in Dmitry Sheiko SAPID Shop 1.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[root_path] parameter.
Exploits (1)
References (4)
Scores
EPSS
0.0610
EPSS Percentile
90.6%
Classification
Status
draft
Affected Products (1)
dmitry_sheiko/sapid_shop
< 1.2
Timeline
Published
Aug 10, 2006
Tracked Since
Feb 18, 2026