Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-2941. PoCs published by Cold Zero.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in vBulletin Google Site Map Creator. The vulnerability allows an attacker to include arbitrary remote files by manipulating the 'base' parameter in two PHP scripts.
Description
Multiple PHP remote file inclusion vulnerabilities in the creator in vBulletin Google Yahoo Site Map (vBGSiteMap) 2.41 for vBulletin allow remote attackers to execute arbitrary PHP code via a URL in the base parameter to (1) vbgsitemap/vbgsitemap-config.php or (2) vbgsitemap/vbgsitemap-vbseo.php.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in vBulletin Google Site Map Creator. The vulnerability allows an attacker to include arbitrary remote files by manipulating the 'base' parameter in two PHP scripts.