Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-2708. PoCs published by Mogatil.
AI-analyzed exploit summary This exploit demonstrates a Remote File Include (RFI) vulnerability in News 2.0's newsadmin.php. The vulnerability arises from unsanitized user input in the 'action' parameter, allowing remote file inclusion.
Description
PHP remote file inclusion vulnerability in newsadmin.php in Feindt Computerservice News (News-Script) 2.0 allows remote attackers to execute arbitrary PHP code via a URL in the action parameter.
Exploits (1)
This exploit demonstrates a Remote File Include (RFI) vulnerability in News 2.0's newsadmin.php. The vulnerability arises from unsanitized user input in the 'action' parameter, allowing remote file inclusion.