Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-5697. PoCs published by Civi.
AI-analyzed exploit summary This exploit demonstrates a remote file inclusion vulnerability in PHP Image v1.2, where the 'xarg' parameter in multiple PHP files is not sanitized, allowing an attacker to include arbitrary remote files.
Description
Multiple PHP remote file inclusion vulnerabilities in PHP Image 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the xarg parameter to (1) xarg_corner.php, (2) xarg_corner_bottom.php, and (3) xarg_corner_top.php.
Exploits (1)
This exploit demonstrates a remote file inclusion vulnerability in PHP Image v1.2, where the 'xarg' parameter in multiple PHP files is not sanitized, allowing an attacker to include arbitrary remote files.