CVE-2006-6045

Comdev One Admin Pro 4.1 - RCE

Title source: llm

Description

Multiple PHP remote file inclusion vulnerabilities in Comdev One Admin Pro 4.1 allow remote attackers to execute arbitrary PHP code via a URL in the path[skin] parameter to (1) adminfoot.php, (2) adminhead.php, or (3) adminlogin.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by w4ck1ng · phpwebappsphp
https://www.exploit-db.com/exploits/2573

Scores

EPSS 0.0306
EPSS Percentile 86.8%

Details

Status published
Products (1)
comdev/comdev_one_admin_pro 4.1
Published Nov 22, 2006
Tracked Since Feb 18, 2026