CVE-2006-4531
Pheap CMS <1.1 - RCE
Title source: llmDescription
PHP remote file inclusion vulnerability in lib/config.php in Pheap CMS 1.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the lpref parameter.
Exploits (1)
References (9)
Scores
EPSS
0.1331
EPSS Percentile
94.2%
Details
Status
published
Products (1)
bare_concept_media/pheap_cms
< 1.1
Published
Sep 01, 2006
Tracked Since
Feb 18, 2026