CVE-2007-0301

FdWeB Espace Membre <2.1 - RCE

Title source: llm

Description

PHP remote file inclusion vulnerability in _admin/admin_menu.php in FdWeB Espace Membre 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by ajann · htmlwebappsphp
https://www.exploit-db.com/exploits/3123

Scores

EPSS 0.0702
EPSS Percentile 91.5%

Details

Status published
Products (2)
fdweb/espace_membre 2.01
fdweb/espace_membre < 2.1
Published Jan 18, 2007
Tracked Since Feb 18, 2026