Exploitation Summary
EIP tracks 1 public exploit for CVE-2005-3797. PoCs published by Robin Verton.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Template Seller Pro due to improper input sanitization. An attacker can execute arbitrary PHP code by manipulating the 'config[basepath]' parameter to include remote files.
Description
PHP remote file inclusion vulnerability in payment_paypal.php in AlstraSoft Template Seller Pro 3.25 allows remote attackers to execute arbitrary PHP code via the config[basepath] parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in Template Seller Pro due to improper input sanitization. An attacker can execute arbitrary PHP code by manipulating the 'config[basepath]' parameter to include remote files.