CVE-2007-4186
Tour de France Pool 1.0.1 - Remote File Inclusion via mosConfig_absolute_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-4186. PoCs published by Yollubunlar.Org.
AI-analyzed exploit summary The code describes a remote file-include vulnerability in Tour de France Pool for Joomla due to insufficient input sanitization. It provides a URL example for exploitation but lacks actual exploit code.
Description
PHP remote file inclusion vulnerability in admin.tour_toto.php in the Tour de France Pool (com_tour_toto) 1.0.1 module for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
Exploits (1)
The code describes a remote file-include vulnerability in Tour de France Pool for Joomla due to insufficient input sanitization. It provides a URL example for exploitation but lacks actual exploit code.