CVE-2007-4320

Ncaster 1.7.2 - RCE

Title source: llm

Description

PHP remote file inclusion vulnerability in admin/addons/archive/archive.php in Ncaster 1.7.2 allows remote attackers to execute arbitrary PHP code via a URL in the adminfolder parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by k1n9k0ng · textwebappsphp
https://www.exploit-db.com/exploits/4273

Scores

EPSS 0.8422
EPSS Percentile 99.3%

Details

Status published
Products (1)
ncaster/ncaster 1.7.2
Published Aug 14, 2007
Tracked Since Feb 18, 2026