CVE-2010-1528
Uiga Proxy - Remote Code Execution via Template Content Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-1528. PoCs published by ITSecTeam.
AI-analyzed exploit summary This HTML/JavaScript exploit targets a remote file inclusion vulnerability in uigaproxy by crafting a malicious URL to include a remote shell file. The PoC submits a form to trigger the inclusion of the attacker-controlled file via the 'content' parameter.
Description
PHP remote file inclusion vulnerability in include/template.php in Uiga Proxy, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the content parameter.
Exploits (1)
This HTML/JavaScript exploit targets a remote file inclusion vulnerability in uigaproxy by crafting a malicious URL to include a remote shell file. The PoC submits a form to trigger the inclusion of the attacker-controlled file via the 'content' parameter.