Vulnerabilities > CVE-2007-3217 - Remote File Include vulnerability in Prototype of AN PHP Application Prototype of AN PHP Application 0.1

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
prototype-of-an-php-application
exploit available

Summary

Multiple PHP remote file inclusion vulnerabilities in Prototype of an PHP application 0.1 allow remote attackers to execute arbitrary PHP code via a URL in the path_inc parameter to (1) index.php in gestion/; (2) identification.php, (3) disconnect.php, (4) loginliste.php, (5) loginmodif.php, (6) index.php, and (7) ident.inc.php in ident/; (8) menuadministration.php and (9) menuprincipal.php in menu/; (10) param.inc.php in param/; (11) index.php in plugins/phpgacl/; and (12) index.php and (13) common.inc.php.

Vulnerable Configurations

Part Description Count
Application
Prototype_Of_An_Php_Application
1

Exploit-Db

  • descriptionPrototype of an PHP application 0.1 ident/disconnect.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30120
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30120/
    titlePrototype of an PHP application 0.1 ident/disconnect.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 common.inc.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30129
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30129/
    titlePrototype of an PHP application 0.1 common.inc.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 ident/ident.inc.php path_inc Parameter Remote File Inclusion. CVE-2007-3217. Webapps exploit for php platform
    idEDB-ID:30124
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30124/
    titlePrototype of an PHP application 0.1 ident/ident.inc.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 ident/identification.php path_inc Parameter Remote File Inclusion. CVE-2007-3217. Webapps exploit for php platform
    idEDB-ID:30119
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30119/
    titlePrototype of an PHP application 0.1 ident/identification.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 ident/loginliste.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30121
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30121/
    titlePrototype of an PHP application 0.1 ident/loginliste.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 index.php path_inc Parameter Remote File Inclusion. CVE-2007-3217. Webapps exploit for php platform
    idEDB-ID:30128
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30128/
    titlePrototype of an PHP application 0.1 index.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 plugins/phpgacl/index.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30127
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30127/
    titlePrototype of an PHP application 0.1 plugins/phpgacl/index.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 param/param.inc.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30126
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30126/
    titlePrototype of an PHP application 0.1 param/param.inc.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 ident/index.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30123
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30123/
    titlePrototype of an PHP application 0.1 ident/index.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 gestion/index.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30118
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30118/
    titlePrototype of an PHP application 0.1 gestion/index.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 menu/menuprincipal.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30125
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30125/
    titlePrototype of an PHP application 0.1 menu/menuprincipal.php path_inc Parameter Remote File Inclusion
  • descriptionPrototype of an PHP application 0.1 ident/loginmodif.php path_inc Parameter Remote File Inclusion. CVE-2007-3217 . Webapps exploit for php platform
    idEDB-ID:30122
    last seen2016-02-03
    modified2007-06-01
    published2007-06-01
    reporterpito pito
    sourcehttps://www.exploit-db.com/download/30122/
    titlePrototype of an PHP application 0.1 ident/loginmodif.php path_inc Parameter Remote File Inclusion