Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-3160. PoCs published by not sec group.
AI-analyzed exploit summary This is a client-side HTML/JavaScript exploit for CVE-2007-3160, targeting a remote file inclusion vulnerability in PHP Real Estate Classifieds Premium Plus. It constructs a malicious URL to include a remote shell via the 'loc' parameter in 'header.php'.
Description
PHP remote file inclusion vulnerability in admin/header.php in PHP Real Estate Classifieds Premium Plus allows remote attackers to execute arbitrary PHP code via a URL in the loc parameter.
Exploits (1)
This is a client-side HTML/JavaScript exploit for CVE-2007-3160, targeting a remote file inclusion vulnerability in PHP Real Estate Classifieds Premium Plus. It constructs a malicious URL to include a remote shell via the 'loc' parameter in 'header.php'.