CVE-2007-6133
DevMass Shopping Cart <= 1.0 - Remote File Inclusion via kfm_base_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6133. PoCs published by S.W.A.T..
AI-analyzed exploit summary This is a writeup describing a Remote File Include (RFI) vulnerability in DevMass Shopping Cart <= 1.0. The vulnerability allows an attacker to include arbitrary remote files via the 'kfm_base_path' parameter in 'admin/kfm/initialise.php'.
Description
PHP remote file inclusion vulnerability in admin/kfm/initialise.php in DevMass Shopping Cart 1.0 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the kfm_base_path parameter.
Exploits (1)
This is a writeup describing a Remote File Include (RFI) vulnerability in DevMass Shopping Cart <= 1.0. The vulnerability allows an attacker to include arbitrary remote files via the 'kfm_base_path' parameter in 'admin/kfm/initialise.php'.