CVE-2007-0171

AllMyLinks <0.5.0 - RCE

Title source: llm
STIX 2.1

Description

PHP remote file inclusion vulnerability in index.php in AllMyLinks 0.5.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the AML_opensite parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by GoLd_M · textwebappsphp
https://www.exploit-db.com/exploits/3096

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/3096
Broken Link vdb-entry x_refsource_osvdb
http://osvdb.org/35909
Exploit, Third Party Advisory, VDB Entry, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/21916

Scores

EPSS 0.0558
EPSS Percentile 90.3%

Details

Status published
Products (1)
allmylinks_project/allmylinks < 0.5
Published Jan 11, 2007
Tracked Since Feb 18, 2026