CVE-2015-5958

HIGH

phpFileManager 0.9.8 - Command Injection

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2015-5958. PoCs published by hyp3rlinx, Jay Turla, including Metasploit module exploits/multi/http/phpfilemanager_rce.

AI-analyzed exploit summary This Metasploit module exploits a remote code execution vulnerability in phpFileManager 0.9.8 by sending a crafted HTTP request to execute arbitrary commands. It leverages a misconfiguration in the authentication mechanism to gain access and execute payloads.

Description

phpFileManager 0.9.8 allows remote attackers to execute arbitrary commands via a crafted URL.

Exploits (1)

metasploit WORKING POC EXCELLENT
by hyp3rlinx, Jay Turla · rubypocunix
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/phpfilemanager_rce.rb

This Metasploit module exploits a remote code execution vulnerability in phpFileManager 0.9.8 by sending a crafted HTTP request to execute arbitrary commands. It leverages a misconfiguration in the authentication mechanism to gain access and execute payloads.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: phpFileManager 0.9.8
No auth needed
Prerequisites: Network access to the target · phpFileManager 0.9.8 installed and accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References

Scores

CVSS v3 8.8
EPSS 0.2738
EPSS Percentile 97.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-78
Status published
Products (1)
phpfilemanager_project/phpfilemanager 0.9.8
Published Aug 31, 2017
Tracked Since Feb 18, 2026