CVE-2007-1996

Codebreak < 1.1.2 - Code Injection

Title source: rule

Description

PHP remote file inclusion vulnerability in codebreak.php in CodeBreak, probably 1.1.2 and earlier, allows remote attackers to execute arbitrary PHP code via a URL in the process_method parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by John Martinelli · htmlwebappsphp
https://www.exploit-db.com/exploits/3711

Scores

EPSS 0.0367
EPSS Percentile 87.9%

Details

CWE
CWE-94
Status published
Products (1)
codebreak/codebreak < 1.1.2
Published Apr 12, 2007
Tracked Since Feb 18, 2026