CVE-2009-2111

DB Top Sites 1.0 - Code Injection

Title source: llm

Description

Static code injection vulnerability in add_reg.php in DB Top Sites 1.0 allows remote attackers to inject arbitrary PHP code via a crafted (1) url and (2) location parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by SirGod · phpwebappsphp
https://www.exploit-db.com/exploits/8951

Scores

EPSS 0.0462
EPSS Percentile 89.3%

Details

CWE
CWE-94
Status published
Products (1)
jnmsolutions/db_top_sites 1.0
Published Jun 18, 2009
Tracked Since Feb 18, 2026