CVE-2007-4947

Multiple PHP remote file inclusion vulnerabilities in myphpPagetool 0.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the ptinclude parameter to (1) help1.php, (2) help2.php, (3) help3.php, (4) help4.php, (5) help5.php, (6) help6.php, (7) help7.php, (7) help8.php, (8) help9.php, or (10) index.php in doc/admin/.
Configurations

Configuration 1 (hide)

cpe:2.3:a:myphppagetool:myphppagetool:0.4.3:*:*:*:*:*:*:*

History

21 Nov 2024, 00:36

Type Values Removed Values Added
References () http://arfis.wordpress.com/2007/09/14/rfi-03-myphppagetool/ - Exploit () http://arfis.wordpress.com/2007/09/14/rfi-03-myphppagetool/ - Exploit
References () http://osvdb.org/43150 - () http://osvdb.org/43150 -
References () http://osvdb.org/43151 - () http://osvdb.org/43151 -
References () http://osvdb.org/43152 - () http://osvdb.org/43152 -
References () http://osvdb.org/43153 - () http://osvdb.org/43153 -
References () http://osvdb.org/43154 - () http://osvdb.org/43154 -
References () http://osvdb.org/43155 - () http://osvdb.org/43155 -
References () http://osvdb.org/43156 - () http://osvdb.org/43156 -
References () http://osvdb.org/43157 - () http://osvdb.org/43157 -
References () http://osvdb.org/43158 - () http://osvdb.org/43158 -
References () http://osvdb.org/43159 - () http://osvdb.org/43159 -

Information

Published : 2007-09-18 20:17

Updated : 2025-04-09 00:30


NVD link : CVE-2007-4947

Mitre link : CVE-2007-4947

CVE.ORG link : CVE-2007-4947


JSON object : View

Products Affected

myphppagetool

  • myphppagetool
CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')