CVE-2002-1885
PowerPhlogger 2.0.9-2.2.2 - Remote File Inclusion via showhits.php3 rel_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-1885.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Power Phlogger 2.0.9 by manipulating the 'rel_path' parameter in 'config.inc.php3' to include arbitrary remote files. The vulnerability arises due to insufficient input validation, allowing an attacker to execute remote code.
Description
PHP remote file inclusion vulnerability in showhits.php3 for PowerPhlogger (PPhlogger) 2.0.9 through 2.2.2 allows remote attackers to execute arbitrary PHP code via the rel_path parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in Power Phlogger 2.0.9 by manipulating the 'rel_path' parameter in 'config.inc.php3' to include arbitrary remote files. The vulnerability arises due to insufficient input validation, allowing an attacker to execute remote code.