CVE-2007-0848
Maian Recipe 1.0 - Remote File Inclusion via path_to_folder Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-0848. PoCs published by Denven.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Maian Recipe v1.0 due to improper input validation in the 'path_to_folder' parameter. An attacker can include arbitrary remote PHP files, leading to remote code execution.
Description
PHP remote file inclusion vulnerability in classes/class_mail.inc.php in Maian Recipe 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_folder parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Maian Recipe v1.0 due to improper input validation in the 'path_to_folder' parameter. An attacker can include arbitrary remote PHP files, leading to remote code execution.