cve/2007/CVE-2007-5157.md
2024-05-26 14:27:05 +02:00

691 B

CVE-2007-5157

Description

PHP remote file inclusion vulnerability in phfito-post.php in Alex Kocharin PHP Fidonet Tosser (PhFiTo) 1.3.0 in phpFidoNode allows remote attackers to execute arbitrary PHP code via a URL in the SRC_PATH parameter to phfito-post.

POC

Reference

Github

No PoCs found on GitHub currently.