CVE-2007-2900
Scallywag 2005-04-25 - Remote Code Execution via Path Parameter in Template.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2900. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This is a writeup describing a Remote File Inclusion (RFI) vulnerability in Scallywag software. It identifies vulnerable files and provides examples of exploit URLs but does not include executable exploit code.
Description
Multiple PHP remote file inclusion vulnerabilities in Scallywag 2005-04-25 allow remote attackers to execute arbitrary PHP code via a URL in the path parameter to template.php in (1) skin/dark/, (2) skin/gold/, or (3) skin/original/.
Exploits (1)
This is a writeup describing a Remote File Inclusion (RFI) vulnerability in Scallywag software. It identifies vulnerable files and provides examples of exploit URLs but does not include executable exploit code.