Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-5221. PoCs published by 0in.
AI-analyzed exploit summary This exploit leverages a remote file inclusion vulnerability in Poppawid's childwindow.inc.php due to improper input validation. An attacker can include a remote shell by manipulating the 'form' parameter when register_globals is enabled.
Description
PHP remote file inclusion vulnerability in mail/childwindow.inc.php in Poppawid 2.7 allows remote attackers to execute arbitrary PHP code via a URL in the form parameter.
Exploits (1)
This exploit leverages a remote file inclusion vulnerability in Poppawid's childwindow.inc.php due to improper input validation. An attacker can include a remote shell by manipulating the 'form' parameter when register_globals is enabled.