CVE-2007-5451
com_colorlab 1.0 - Remote Code Execution via mosConfig_live_site Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-5451. PoCs published by Mehmet Ince.
AI-analyzed exploit summary This exploit leverages a Remote File Include (RFI) vulnerability in Joomla's com_colorlab component due to improper input validation in the 'mosConfig_live_site' parameter. The PoC demonstrates how an attacker can include a remote shell by manipulating the parameter in the URL.
Description
PHP remote file inclusion vulnerability in admin.color.php in the com_colorlab (aka com_color) 1.0 component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_live_site parameter.
Exploits (1)
This exploit leverages a Remote File Include (RFI) vulnerability in Joomla's com_colorlab component due to improper input validation in the 'mosConfig_live_site' parameter. The PoC demonstrates how an attacker can include a remote shell by manipulating the parameter in the URL.