CVE-2007-0301
FdWeB Espace Membre < 2.1 - Remote File Inclusion via path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0301. PoCs published by ajann.
AI-analyzed exploit summary This is a proof-of-concept exploit for a remote file inclusion vulnerability in FdWeB Espace Membre <= 2.01. It allows an attacker to include a remote shell script by manipulating the 'path' parameter in the 'admin_menu.php' file.
Description
PHP remote file inclusion vulnerability in _admin/admin_menu.php in FdWeB Espace Membre 2.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the path parameter.
Exploits (1)
This is a proof-of-concept exploit for a remote file inclusion vulnerability in FdWeB Espace Membre <= 2.01. It allows an attacker to include a remote shell script by manipulating the 'path' parameter in the 'admin_menu.php' file.