Vulnerabilities > CVE-2007-2939 - Remote File Include vulnerability in Mazens PHP Chat Mazens PHP Chat 3.0.0
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
PARTIAL Availability impact
PARTIAL Summary
Multiple PHP remote file inclusion vulnerabilities in Mazen's PHP Chat 3.0.0 allow remote attackers to execute arbitrary PHP code via a URL in the basepath parameter to (1) ITX.php, (2) IT_Error.php, or (3) IT.php in include/pear/.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description | Mazens PHP Chat V3 (basepath) Remote File Inclusion Vulnerabilities. CVE-2007-2939. Webapps exploit for php platform |
file | exploits/php/webapps/3994.txt |
id | EDB-ID:3994 |
last seen | 2016-01-31 |
modified | 2007-05-26 |
platform | php |
port | |
published | 2007-05-26 |
reporter | ThE TiGeR |
source | https://www.exploit-db.com/download/3994/ |
title | Mazens PHP Chat V3 basepath - Remote File Inclusion Vulnerabilities |
type | webapps |