CVE-2007-1516
Cicoandcico CcMail 1.0 - Remote File Inclusion via functions_dir Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-1516. PoCs published by Crackers_Child.
AI-analyzed exploit summary This exploit targets a remote file inclusion vulnerability in CcMail 1.0, allowing an attacker to execute arbitrary commands by including a malicious PHP shell. The script uses LWP::UserAgent to send HTTP requests with crafted parameters to achieve remote code execution.
Description
PHP remote file inclusion vulnerability in functions/update.php in Cicoandcico CcMail 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the functions_dir parameter.
Exploits (1)
This exploit targets a remote file inclusion vulnerability in CcMail 1.0, allowing an attacker to execute arbitrary commands by including a malicious PHP shell. The script uses LWP::UserAgent to send HTTP requests with crafted parameters to achieve remote code execution.