CVE-2006-5280
Cuttlefish Multimedia Ltd. Leicesters... - Code Injection
Title source: ruleDescription
PHP remote file inclusion vulnerability in includes/import-archive.php in Leicestershire communityPortals 1.0 build 20051018 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cp_root_path parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Nima Salehi · perlwebappsphp
https://www.exploit-db.com/exploits/2516
References (6)
Scores
EPSS
0.0174
EPSS Percentile
82.6%
Details
CWE
CWE-94
Status
published
Products (1)
cuttlefish_multimedia_ltd./leicestershire_communityportals
< 1.build_20051018
Published
Oct 13, 2006
Tracked Since
Feb 18, 2026