CVE-2008-1776
phpblock A8.4 - Remote Code Execution via PATH_TO_CODE Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-1776. PoCs published by w0cker.
AI-analyzed exploit summary This exploit leverages a file inclusion vulnerability in PHP Block a8.4 by manipulating the PATH_TO_CODE parameter to include a remote shell. The vulnerability allows arbitrary code execution due to improper input validation.
Description
PHP remote file inclusion vulnerability in modules/basicfog/basicfogfactory.class.php in PhpBlock A8.4 allows remote attackers to execute arbitrary PHP code via a URL in the PATH_TO_CODE parameter.
Exploits (1)
This exploit leverages a file inclusion vulnerability in PHP Block a8.4 by manipulating the PATH_TO_CODE parameter to include a remote shell. The vulnerability allows arbitrary code execution due to improper input validation.