CVE-2008-6408

Brian Wilson Ol'bookmarks - Code Injection

Title source: rule

Description

PHP remote file inclusion vulnerability in frame.php in ol'bookmarks manager 0.7.5 allows remote attackers to execute arbitrary PHP code via a URL in the framefile parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by GoLd_M · textwebappsphp
https://www.exploit-db.com/exploits/6547

Scores

EPSS 0.0234
EPSS Percentile 84.6%

Classification

CWE
CWE-94
Status draft

Affected Products (1)

brian_wilson/ol\'bookmarks

Timeline

Published Mar 06, 2009
Tracked Since Feb 18, 2026