Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-2228. PoCs published by RoMaNcYxHaCkEr.
AI-analyzed exploit summary This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Cyberfolio 7.2 by injecting a malicious URL parameter to include a remote shell script. The PoC provides a direct URL to exploit the vulnerability without requiring authentication.
Description
PHP remote file inclusion vulnerability in portfolio/commentaires/derniers_commentaires.php in Cyberfolio 7.12, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the rep parameter.
Exploits (1)
This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in Cyberfolio 7.2 by injecting a malicious URL parameter to include a remote shell script. The PoC provides a direct URL to exploit the vulnerability without requiring authentication.