CVE-2006-5385
SpamOborona <1.0b - RCE
Title source: llmDescription
PHP remote file inclusion vulnerability in admin/admin_spam.php in the SpamOborona 1.0b and earlier phpBB module allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Nima Salehi · perlwebappsphp
https://www.exploit-db.com/exploits/2547
References (7)
Scores
EPSS
0.1737
EPSS Percentile
95.1%
Details
Status
published
Products (1)
spamoborona/spamoborona
1.0b
Published
Oct 18, 2006
Tracked Since
Feb 18, 2026