CVE-2006-4366

RedBLoG 0.5 - RCE

Title source: llm
STIX 2.1

Description

PHP remote file inclusion vulnerability in index.php in RedBLoG 0.5 allows remote attackers to execute arbitrary PHP code via a URL in the root_path parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Root3r_H3ll · textwebappsphp
https://www.exploit-db.com/exploits/28423

References (3)

Core 3
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/19658
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/30311

Scores

EPSS 0.0239
EPSS Percentile 85.1%

Details

Status published
Products (1)
redblog/redblog 0.5
Published Aug 26, 2006
Tracked Since Feb 18, 2026