CVE-2007-1771

Ay System Solutions WCS 2.7.1 - RCE

Title source: llm

Description

PHP remote file inclusion vulnerability in manage/javascript/formjavascript.php in Ay System Solutions Web Content System (WCS) 2.7.1 allows remote attackers to execute arbitrary PHP code via a URL in the path[JavascriptEdit] parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by kezzap66345 · htmlwebappsphp
https://www.exploit-db.com/exploits/3592

Scores

EPSS 0.0951
EPSS Percentile 92.9%

Details

Status published
Products (1)
ay_system_solutions/web_content_system 2.7.1
Published Mar 30, 2007
Tracked Since Feb 18, 2026