arfis project

2 exploits Active since Sep 2007
CVE-2007-5567 EXPLOITDB text WORKING POC
Galmeta Post 0.11 - Remote Code Execution via DDS Parameter
PHP remote file inclusion vulnerability in _lib/fckeditor/upload_config.php in Galmeta Post 0.11 allows remote attackers to execute arbitrary PHP code via a URL in the DDS parameter.
CVE-2007-4921 EXPLOITDB text WORKING POC
Ajax File Browser 3 Beta - Remote Code Execution via approot Parameter
PHP remote file inclusion vulnerability in _includes/settings.inc.php in Ajax File Browser 3 Beta allows remote attackers to execute arbitrary PHP code via a URL in the approot parameter.