Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-4279. PoCs published by kezzap66345.
AI-analyzed exploit summary This is a writeup describing a Remote File Inclusion (RFI) vulnerability in FrontAccounting. The vulnerability is due to improper input validation in the 'path_to_root' parameter in config.php, allowing an attacker to include arbitrary remote files.
Description
PHP remote file inclusion vulnerability in config.php in FrontAccounting 1.12 Build 31 allows remote attackers to execute arbitrary PHP code via a URL in the path_to_root parameter.
Exploits (1)
This is a writeup describing a Remote File Inclusion (RFI) vulnerability in FrontAccounting. The vulnerability is due to improper input validation in the 'path_to_root' parameter in config.php, allowing an attacker to include arbitrary remote files.