Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-4818. PoCs published by Nice Name Crew.
AI-analyzed exploit summary This is a writeup detailing a file inclusion vulnerability in Txx CMS, specifically in multiple PHP files where the $doc_root variable is not properly defined, allowing for potential remote file inclusion attacks.
Description
Multiple PHP remote file inclusion vulnerabilities in Txx CMS 0.2 allow remote attackers to execute arbitrary PHP code via a URL in the doc_root parameter to (1) addons/plugin.php, (2) addons/sidebar.php, (3) mail/index.php, or (4) mail/mailbox.php in modules/.
Exploits (1)
This is a writeup detailing a file inclusion vulnerability in Txx CMS, specifically in multiple PHP files where the $doc_root variable is not properly defined, allowing for potential remote file inclusion attacks.