CVE-2007-1907
Pathos Content Management System 0.92-2 - Remote File Inclusion via warn.php file Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-1907. PoCs published by kezzap66345.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Pathos CMS via the 'warn.php' file, which includes user-supplied input without proper validation. The vulnerability allows an attacker to execute arbitrary code by including a malicious remote file.
Description
PHP remote file inclusion vulnerability in warn.php in Pathos Content Management System (CMS) 0.92-2 allows remote attackers to execute arbitrary PHP code via a URL in the file parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Pathos CMS via the 'warn.php' file, which includes user-supplied input without proper validation. The vulnerability allows an attacker to execute arbitrary code by including a malicious remote file.