CVE-2007-4341
Omnistar Lib2 PHP 0.2 - Remote File Inclusion via DOCUMENT_ROOT Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-4341. PoCs published by ilker Kandemir.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in Lib2 PHP Library 0.2 due to insufficient sanitization of user-supplied data in the DOCUMENT_ROOT parameter. An attacker can include arbitrary remote files, potentially leading to remote code execution.
Description
PHP remote file inclusion vulnerability in adm/my_statistics.php in Omnistar Lib2 PHP 0.2 allows remote attackers to execute arbitrary PHP code via a URL in the DOCUMENT_ROOT parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in Lib2 PHP Library 0.2 due to insufficient sanitization of user-supplied data in the DOCUMENT_ROOT parameter. An attacker can include arbitrary remote files, potentially leading to remote code execution.