Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-0572. PoCs published by MackRulZ.
AI-analyzed exploit summary This exploit targets a remote file inclusion vulnerability in Xero Portal v1.2 by injecting a malicious URL into the 'root_path' parameter. It allows remote command execution via an external shell script hosted on a third-party server.
Description
PHP remote file inclusion vulnerability in include/irc/phpIRC.php in Drunken:Golem Gaming Portal 0.5.1 Alpha 2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Exploits (1)
This exploit targets a remote file inclusion vulnerability in Xero Portal v1.2 by injecting a malicious URL into the 'root_path' parameter. It allows remote command execution via an external shell script hosted on a third-party server.