CVE-2006-5399
Phprecipebook - Code Injection
Title source: ruleDescription
PHP remote file inclusion vulnerability in classes/Import_MM.class.php in PHPRecipeBook 2.36, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the g_rb_basedir parameter.
Exploits (1)
References (8)
Scores
EPSS
0.2035
EPSS Percentile
95.5%
Details
CWE
CWE-94
Status
published
Products (1)
phprecipebook/phprecipebook
2.36
Published
Oct 18, 2006
Tracked Since
Feb 18, 2026