CVE-2006-5911

Campware Campsite < 2.6.2 - Remote File Inclusion via g_documentRoot Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 38 public exploits for CVE-2006-5911. PoCs published by anonymous.

AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Description

Multiple PHP remote file inclusion vulnerabilities in Campware Campsite before 2.6.2 allow remote attackers to execute arbitrary PHP code via a URL in the g_documentRoot parameter to (1) Alias.php, (2) Article.php, (3) ArticleAttachment.php, (4) ArticleComment.php, (5) ArticleData.php, (6) ArticleImage.php, (7) ArticleIndex.php, (8) ArticlePublish.php, (9) ArticleTopic.php, (10) ArticleType.php, (11) ArticleTypeField.php, (12) Attachment.php, (13) Country.php, (14) DatabaseObject.php, (15) Event.php, (16) IPAccess.php, (17) Image.php, (18) Issue.php, (19) IssuePublish.php, (20) Language.php, (21) Log.php, (22) LoginAttempts.php, (23) Publication.php, (24) Section.php, (25) ShortURL.php, (26) Subscription.php, (27) SubscriptionDefaultTime.php, (28) SubscriptionSection.php, (29) SystemPref.php, (30) Template.php, (31) TimeUnit.php, (32) Topic.php, (33) UrlType.php, (34) User.php, and (35) UserType.php in implementation/management/classes/; (36) configuration.php and (37) db_connect.php in implementation/management/; and (38) LocalizerConfig.php and (39) LocalizerLanguage.php in implementation/management/priv/localizer/.

Exploits (38)

exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29999

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote shell accessible via URL · Target server with vulnerable Campsite installation
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29998

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in `User.php`. The PoC provides a URL example to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file hosting with shell payload · Network access to the target
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29997

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `UrlType.php` script.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29996

The provided text describes a remote file inclusion vulnerability in Campsite 2.6.1, allowing remote code execution via the `g_DocumentRoot` parameter. However, it lacks actual exploit code, making it a writeup rather than a working PoC.

Classification
Writeup 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion vulnerability in Campsite 2.6.1 · Ability to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29995

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `TimeUnit.php` file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote access to the vulnerable web application
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29994

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `Template.php` file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29993

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter to include a remote shell. The attack allows arbitrary code execution in the context of the webserver.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29992

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29991

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote shell accessible via URL · PHP allow_url_include enabled
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29990

The provided text describes a remote file inclusion vulnerability in Campsite 2.6.1, allowing remote code execution by manipulating the `g_DocumentRoot` parameter. However, no actual exploit code is included, only a reference URL and a brief description.

Classification
Writeup 80%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled · Attacker-controlled server to host malicious file
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29989

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter in `ShortURL.php` to include and execute arbitrary remote code.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29988

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `Section.php` file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29987

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the g_DocumentRoot parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29986

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the g_DocumentRoot parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29985

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `Log.php` file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/30006

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote shell accessible via URL · Target server with vulnerable Campsite installation
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/30005

The provided text describes a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code via a crafted URL. However, the example lacks executable exploit code, making it a writeup rather than a working PoC.

Classification
Writeup 80%
Attack Type
Rce
Complexity
Trivial
Reliability
Theoretical
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion vulnerability in Campsite · Ability to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29984

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `Language.php` file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29983

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the g_DocumentRoot parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote shell file hosted on an accessible server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29982

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the g_DocumentRoot parameter in the Issue.php script.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29980

This exploit leverages a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter in `IPAccess.php` to include and execute arbitrary remote code.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29981

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter in `Image.php` to include and execute arbitrary remote files. The attack vector is straightforward, requiring no authentication.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file hosting with executable code (e.g., shell.txt)
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29979

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `Event.php` file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29978

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29977

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29976

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the g_DocumentRoot parameter to include a remote shell. The attack leverages improper input validation to execute arbitrary code.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file hosting with shell payload · Network access to target
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29975

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing remote attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `ArticleType.php` script.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29974

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the g_DocumentRoot parameter. The PoC provides a URL example to trigger the vulnerability.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29973

This exploit leverages a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter to include and execute arbitrary remote code. The attack is straightforward and requires no authentication.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29972

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter to include a remote shell. The vulnerability allows arbitrary code execution in the context of the webserver.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29971

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in `ArticleImage.php`. The PoC provides a URL example to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29970

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29969

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter to include a remote shell.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29968

The exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter to include and execute arbitrary remote files. This leads to remote code execution in the context of the webserver.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file hosting with executable code · Network access to the target webserver
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29967

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1 by manipulating the `g_DocumentRoot` parameter to include a remote shell. The attack relies on improper input validation to execute arbitrary code.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/29966

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in the `Alias.php` file. The PoC provides a URL example to include a remote shell file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/30004

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the `g_DocumentRoot` parameter in `db_connect.php`. The PoC provides a URL example to include a remote shell file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote shell file hosted on an accessible server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by anonymous · textwebappsphp
https://www.exploit-db.com/exploits/30003

This exploit demonstrates a remote file inclusion vulnerability in Campsite 2.6.1, allowing attackers to execute arbitrary code by manipulating the g_DocumentRoot parameter in configuration.php. The PoC provides a URL example to include a remote shell file.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: Campsite 2.6.1
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker must be able to host a malicious file on a remote server
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (45)

Core 45
Core References
Various Sources x_refsource_confirm
http://code.campware.org/projects/campsite/ticket/2349
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34217
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34215
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34189
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34214
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34198
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34195
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34205
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34187
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34208
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34216
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34224
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34197
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34221
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34213
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34209
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34211
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34191
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34225
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34203
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34200
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34222
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34223
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34218
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34206
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34199
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34196
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34219
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34201
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/23874
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34192
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34210
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34188
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34204
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34202
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34190
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34220
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34207
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34193
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34194
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/34212

Scores

EPSS 0.0444
EPSS Percentile 90.4%

Details

Status published
Products (2)
campware.org/campsite 2.6.0
campware.org/campsite 2.6.1
Published Nov 15, 2006
Tracked Since Feb 18, 2026