CVE-2008-0287
VisionBurst vcart 3.3.2 - Remote Code Execution via abs_path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0287. PoCs published by k1n9k0ng.
AI-analyzed exploit summary The provided text describes a local file inclusion (LFI) vulnerability in vcart version 3.3.2, where the 'abs_path' parameter in 'index.php' and 'checkout.php' can be manipulated to include arbitrary files. No actual exploit code is present, only a description of the vulnerability and affected parameters.
Description
PHP remote file inclusion vulnerability in VisionBurst vcart 3.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1) index.php and (2) checkout.php.
Exploits (1)
The provided text describes a local file inclusion (LFI) vulnerability in vcart version 3.3.2, where the 'abs_path' parameter in 'index.php' and 'checkout.php' can be manipulated to include arbitrary files. No actual exploit code is present, only a description of the vulnerability and affected parameters.