CVE-2007-4325
Gaestebuch 1.5 - Remote File Inclusion via config[root_ordner] Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-4325. PoCs published by Rizgar.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Mapos-Scripts.de Gastebuch 1.5. An attacker can inject a malicious remote file via the 'config[root_ordner]' parameter, leading to arbitrary code execution.
Description
PHP remote file inclusion vulnerability in index.php in Gaestebuch 1.5 allows remote attackers to execute arbitrary PHP code via a URL in the config[root_ordner] parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in Mapos-Scripts.de Gastebuch 1.5. An attacker can inject a malicious remote file via the 'config[root_ordner]' parameter, leading to arbitrary code execution.