CVE-2007-2257
Fully Modded phpBB2 - Remote File Inclusion via phpbb_root_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2257. PoCs published by HACKERS PAL.
AI-analyzed exploit summary This exploit targets a remote file inclusion vulnerability in Fully Modded PHPBB2 by injecting a malicious URL to execute arbitrary commands. It uses a base64-encoded payload to exploit the vulnerability and includes a form for user input to specify the target URL and command.
Description
PHP remote file inclusion vulnerability in subscp.php in Fully Modded phpBB2 allows remote attackers to execute arbitrary PHP code via a URL in the phpbb_root_path parameter.
Exploits (1)
This exploit targets a remote file inclusion vulnerability in Fully Modded PHPBB2 by injecting a malicious URL to execute arbitrary commands. It uses a base64-encoded payload to exploit the vulnerability and includes a form for user input to specify the target URL and command.