CVE-2008-5199
PHPOutsourcing IdeaBox 1.1 - Remote Code Execution via gorumDir Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5199. PoCs published by Kacper.
AI-analyzed exploit summary This exploit demonstrates a Remote File Include (RFI) vulnerability in IdeaBox <= 1.1 by manipulating the 'gorumDir' parameter in include.php to include arbitrary remote scripts. The vulnerability arises due to insufficient input validation.
Description
PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the gorumDir parameter.
Exploits (1)
This exploit demonstrates a Remote File Include (RFI) vulnerability in IdeaBox <= 1.1 by manipulating the 'gorumDir' parameter in include.php to include arbitrary remote scripts. The vulnerability arises due to insufficient input validation.