CVE-2006-5280

Cuttlefish Multimedia Ltd. Leicesters... - Code Injection

Title source: rule

Description

PHP remote file inclusion vulnerability in includes/import-archive.php in Leicestershire communityPortals 1.0 build 20051018 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cp_root_path parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Nima Salehi · perlwebappsphp
https://www.exploit-db.com/exploits/2516

Scores

EPSS 0.0174
EPSS Percentile 82.6%

Details

CWE
CWE-94
Status published
Products (1)
cuttlefish_multimedia_ltd./leicestershire_communityportals < 1.build_20051018
Published Oct 13, 2006
Tracked Since Feb 18, 2026