CVE-2007-1078
FlashGameScript 1.5.4 - Remote Code Execution via index.php func Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-1078. PoCs published by JuMp-Er.
AI-analyzed exploit summary The exploit describes a vulnerability in FlashGameScript 1.5.4 where the 'func' parameter in index.php is used unsafely, allowing remote file inclusion (RFI) via a malicious URL. The PoC provides an example URL but lacks executable code.
Description
PHP remote file inclusion vulnerability in index.php in FlashGameScript 1.5.4 allows remote attackers to execute arbitrary PHP code via a URL in the func parameter.
Exploits (1)
The exploit describes a vulnerability in FlashGameScript 1.5.4 where the 'func' parameter in index.php is used unsafely, allowing remote file inclusion (RFI) via a malicious URL. The PoC provides an example URL but lacks executable code.