CVE-2008-1067

phpQLAdmin 2.2.7 - Remote Code Execution via _SESSION[path] Parameter

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-1067. PoCs published by RoMaNcYxHaCkEr.

AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in phpQLAdmin 2.2.7 via the `_SESSION[path]` parameter in `ezmlm.php` and `update_translations.php`. It allows an attacker to include and execute arbitrary remote files, leading to remote code execution.

Description

Multiple PHP remote file inclusion vulnerabilities in phpQLAdmin 2.2.7 allow remote attackers to execute arbitrary PHP code via a URL in the _SESSION[path] parameter to (1) ezmlm.php and (2) tools/update_translations.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by RoMaNcYxHaCkEr · textwebappsphp
https://www.exploit-db.com/exploits/5173

This exploit demonstrates a remote file inclusion vulnerability in phpQLAdmin 2.2.7 via the `_SESSION[path]` parameter in `ezmlm.php` and `update_translations.php`. It allows an attacker to include and execute arbitrary remote files, leading to remote code execution.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: phpQLAdmin 2.2.7
No auth needed
Prerequisites: Remote file inclusion must be enabled on the target server · Attacker-controlled server hosting malicious file
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (2)

Core 2
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/29076
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/5173

Scores

EPSS 0.1984
EPSS Percentile 97.1%

Details

CWE
CWE-94
Status published
Products (1)
phpqladmin/phpqladmin 2.2.7
Published Feb 28, 2008
Tracked Since Feb 18, 2026