Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-2628. PoCs published by ilker Kandemir.
AI-analyzed exploit summary This exploit targets a remote file include vulnerability in PHPSecurityAdmin by injecting a malicious URL into the PSA_PATH parameter. It allows remote command execution via a user-supplied shell script.
Description
PHP remote file inclusion vulnerability in include/logout.php in Justin Koivisto SecurityAdmin for PHP (aka PHPSecurityAdmin, PSA) 4.0.2 allows remote attackers to execute arbitrary PHP code via a URL in the PSA_PATH parameter.
Exploits (1)
This exploit targets a remote file include vulnerability in PHPSecurityAdmin by injecting a malicious URL into the PSA_PATH parameter. It allows remote command execution via a user-supplied shell script.