CVE-2006-6575

Brian Drawert Yaplap <0.6-0.6.1 - RCE

Title source: llm

Description

PHP remote file inclusion vulnerability in ldap.php in Brian Drawert Yet Another PHP LDAP Admin Project (yaplap) 0.6 and 0.6.1 allows remote attackers to execute arbitrary PHP code via a URL in the LOGIN_style parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by DeltahackingTEAM · perlwebappsphp
https://www.exploit-db.com/exploits/2930

Scores

EPSS 0.0659
EPSS Percentile 91.2%

Details

Status published
Products (2)
brian_drawert/yaplap 0.6
brian_drawert/yaplap 0.6.1
Published Dec 15, 2006
Tracked Since Feb 18, 2026