CVE-2007-0232
Jshop Server 1.3 - Remote File Inclusion via jssShopFileSystem Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0232. PoCs published by irvian.
AI-analyzed exploit summary This exploit leverages a file inclusion vulnerability in Jshop Server 1.3 by manipulating the `jssShopFileSystem` parameter in `fieldValidation.php` to include arbitrary remote or local files, potentially leading to remote code execution.
Description
PHP remote file inclusion vulnerability in routines/fieldValidation.php in Jshop Server 1.3 allows remote attackers to execute arbitrary PHP code via a URL in the jssShopFileSystem parameter.
Exploits (1)
This exploit leverages a file inclusion vulnerability in Jshop Server 1.3 by manipulating the `jssShopFileSystem` parameter in `fieldValidation.php` to include arbitrary remote or local files, potentially leading to remote code execution.