Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-0700. PoCs published by GoLd_M.
AI-analyzed exploit summary This exploit demonstrates remote and local file inclusion vulnerabilities in Portail Web Php <= 2.5.1.1. It provides paths to inject remote files via the 'site_path' parameter and local files via the 'page' parameter.
Description
Directory traversal vulnerability in index.php in Guernion Sylvain Portail Web Php (aka Gsylvain35 Portail Web, PwP) allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. NOTE: this issue was later reported for 2.5.1.1.
Exploits (1)
This exploit demonstrates remote and local file inclusion vulnerabilities in Portail Web Php <= 2.5.1.1. It provides paths to inject remote files via the 'site_path' parameter and local files via the 'page' parameter.