Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-0966. PoCs published by cr4wl3r.
AI-analyzed exploit summary This exploit demonstrates a Remote File Include (RFI) vulnerability in deV!L`z Clanportal 1.5.2. The vulnerability arises from insecure handling of the `basePath` parameter in `inc/config.php`, allowing remote file inclusion via URL manipulation.
Description
PHP remote file inclusion vulnerability in inc/config.php in deV!L`z Clanportal (DZCP) 1.5.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the basePath parameter.
Exploits (1)
This exploit demonstrates a Remote File Include (RFI) vulnerability in deV!L`z Clanportal 1.5.2. The vulnerability arises from insecure handling of the `basePath` parameter in `inc/config.php`, allowing remote file inclusion via URL manipulation.