CVE-2006-4426

AlberT-EasySite <1.0a5 - RCE

Title source: llm

Description

PHP remote file inclusion vulnerability in AES/modules/auth/phpsecurityadmin/include/logout.php in AlberT-EasySite (AES) 1.0a5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the PSA_PATH parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Kacper · perlwebappsphp
https://www.exploit-db.com/exploits/2260

Scores

EPSS 0.1641
EPSS Percentile 94.9%

Details

Status published
Products (2)
albert/albert-easysite 0.8.12
albert/albert-easysite < 1.0a5
Published Aug 29, 2006
Tracked Since Feb 18, 2026