CVE-2007-2202
Accueil et Conseil en Visites et Sejours Web Services PHP5 1.0 - Remote File Inclusion via CheminInclude Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2202. PoCs published by MoHaNdKo.
AI-analyzed exploit summary This exploit leverages a remote file inclusion vulnerability in acvsws_php5 due to insufficient sanitization of user-supplied input via the 'CheminInclude' parameter. An attacker can include a remote shell or malicious file to achieve remote code execution.
Description
PHP remote file inclusion vulnerability in inc_ACVS/SOAP/Transport.php in Accueil et Conseil en Visites et Sejours Web Services (ACVSWS) PHP5 (ACVSWS_PHP5) 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the CheminInclude parameter.
Exploits (1)
This exploit leverages a remote file inclusion vulnerability in acvsws_php5 due to insufficient sanitization of user-supplied input via the 'CheminInclude' parameter. An attacker can include a remote shell or malicious file to achieve remote code execution.