CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2006-5292

HIGH
7.5
CVSS Severity Score
EPSS Score0.1100%
EPSS Percentile28.48th
Published2006年10月16日
Last Modified2026年4月23日

Vulnerability Description

PHP remote file inclusion vulnerability in photo_comment.php in Exhibit Engine 1.5 RC 4 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the toroot parameter.

Affected Platforms (CPE)

📦
Exhibit Engine

Exhibit Engine

= 1.5_rc4
📦
Exhibit Engine

Exhibit Engine

= 1.22

References & Advisories

相關漏洞威脅