CVE-2007-1571
Radical Designs Activist Mobilization Platform < 3.2 - Remote File Inclusion via base_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-1571. PoCs published by the_day.
AI-analyzed exploit summary This is an advisory detailing a remote file inclusion vulnerability in AMP v3.2 due to improper verification of the $base_path parameter in base.php. The advisory includes a proof-of-concept URL demonstrating the vulnerability.
Description
PHP remote file inclusion vulnerability in includes/base.php in Radical Designs Activist Mobilization Platform (AMP) 3.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the base_path parameter.
Exploits (1)
This is an advisory detailing a remote file inclusion vulnerability in AMP v3.2 due to improper verification of the $base_path parameter in base.php. The advisory includes a proof-of-concept URL demonstrating the vulnerability.