CVE-2007-2493
mxbb_faq < 2.0.0 - Remote File Inclusion via module_root_path Parameter
Title source: manualExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2493. PoCs published by bd0rk.
AI-analyzed exploit summary This exploit targets a remote file inclusion vulnerability in mxBB Module MX Faq & Rules <= 2.0.0. It allows an attacker to include a remote shell script via the 'module_root_path' parameter in faq.php, leading to remote command execution.
Description
PHP remote file inclusion vulnerability in faq.php in the FAQ & RULES 2.0.0 and earlier module for mxBB allows remote attackers to execute arbitrary PHP code via a URL in the module_root_path parameter.
Exploits (1)
This exploit targets a remote file inclusion vulnerability in mxBB Module MX Faq & Rules <= 2.0.0. It allows an attacker to include a remote shell script via the 'module_root_path' parameter in faq.php, leading to remote command execution.