Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-2272. PoCs published by DamaR.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in AWBS v2.4.0 via the 'workdir' parameter in cart2.php. The attacker can include a remote file containing malicious code, leading to potential remote code execution.
Description
PHP remote file inclusion vulnerability in docs/front-end-demo/cart2.php in Advanced Webhost Billing System (AWBS) 2.4.0 allows remote attackers to execute arbitrary PHP code via a URL in the workdir parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in AWBS v2.4.0 via the 'workdir' parameter in cart2.php. The attacker can include a remote file containing malicious code, leading to potential remote code execution.