37074vdb entry
http://osvdb.org/37074 CVE-2007-4834
phpRealty 0.02 - 'MGR' Multiple Remote File Inclusions
Record summary
CVE-2007-4834 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Multiple PHP remote file inclusion vulnerabilities in phpRealty 0.02 allow remote attackers to execute arbitrary PHP code via a URL in the MGR parameter to (1) index.php, (2) p_ins.php, and (3) u_ins.php in manager/admin/.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBphpRealty 0.02 - 'MGR' Multiple Remote File InclusionsExploitDB exploitby QTRinuxNot analyzed1 file
References
737075vdb entry
http://osvdb.org/37075 37076vdb entry
http://osvdb.org/37076 25610vdb entry
http://www.securityfocus.com/bid/25610 phprealty-mgr-file-include(36518)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/36518 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-4834 4387exploit
https://www.exploit-db.com/exploits/4387