Vulnerabilities > CVE-2007-0200 - Remote File Include vulnerability in Geoffrey Golliher Axiom Photo News Gallery 0.8.6

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
geoffrey-golliher
exploit available

Summary

PHP remote file inclusion vulnerability in template.php in Geoffrey Golliher Axiom Photo/News Gallery (axiompng) 0.8.6 allows remote attackers to execute arbitrary PHP code via a URL in the baseAxiomPath parameter.

Vulnerable Configurations

Part Description Count
Application
Geoffrey_Golliher
1

Exploit-Db

descriptionAxiom Photo/News Gallery 0.8.6 Remote File Include Exploit. CVE-2007-0200. Webapps exploit for php platform
fileexploits/php/webapps/3108.pl
idEDB-ID:3108
last seen2016-01-31
modified2007-01-09
platformphp
port
published2007-01-09
reporterDeltahackingTEAM
sourcehttps://www.exploit-db.com/download/3108/
titleAxiom Photo/News Gallery 0.8.6 - Remote File Include Exploit
typewebapps