CVE-2007-4757
phpmytourney - Remote File Inclusion via menu.php functions_file Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-4757. PoCs published by S.W.A.T..
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in phpMytourney due to insecure handling of the 'functions_file' parameter in 'menu.php'. An attacker can include a remote shell by manipulating the parameter.
Description
PHP remote file inclusion vulnerability in menu.php in phpMytourney allows remote attackers to execute arbitrary PHP code via a URL in the functions_file parameter.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in phpMytourney due to insecure handling of the 'functions_file' parameter in 'menu.php'. An attacker can include a remote shell by manipulating the parameter.