CVE-2007-5234
Ossigeno CMS 2.2 alpha3 - Remote Code Execution via Level Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-5234. PoCs published by Nice Name Crew.
AI-analyzed exploit summary This is a writeup describing a file inclusion vulnerability in Ossigeno-script 2.2_alpha3. The vulnerability arises from an undefined variable $level in the footer.php file, which can be exploited for local file inclusion or potentially remote file inclusion.
Description
PHP remote file inclusion vulnerability in upload/common/footer.php in Ossigeno CMS 2.2 alpha3 allows remote attackers to execute arbitrary PHP code via a URL in the level parameter.
Exploits (1)
This is a writeup describing a file inclusion vulnerability in Ossigeno-script 2.2_alpha3. The vulnerability arises from an undefined variable $level in the footer.php file, which can be exploited for local file inclusion or potentially remote file inclusion.