Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2007-1456

EPSS 1.06% · P78
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2007-1456

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
PHP remote file inclusion vulnerability in common.php in PHP Photo Album allows remote attackers to execute arbitrary PHP code via a URL in the db_file parameter. NOTE: CVE disputes this vulnerability, because versions 0.3.2.6 and 0.4.1beta do not contain this file. However, it is possible that the original researcher was referring to a different product
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
PHP Photo Album common.php PHP远程文件包含漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
**有争议的**PHP Photo Album的common.php中存在PHP远程文件包含漏洞。远程攻击者可以借助db_file参数中的一个URL,执行任意的PHP代码。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2007-1456

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2007-1456

Please Login to view more intelligence information

Same Patch Batch · n/a · 2007-03-14 · 19 CVEs total

CVE-2007-1459WebCreator 多个远程文件包含漏洞
CVE-2007-1446Open Educational System 多个远程文件包含漏洞
CVE-2007-1445BP Blog default.asp heme预览特性SQL注入漏洞
CVE-2007-1444Netperf netserver 任意文件重写漏洞
CVE-2007-1443Woltlab Burning Board (wBB)/Burning Board Lite register.php 跨站脚本攻击漏洞
CVE-2007-1442Oracle数据库服务器DACL多个不安全权限漏洞
CVE-2007-1441RIM BlackBerry 8100(Pearl) 4thPass浏览器 输入验证漏洞
CVE-2007-1461Apple Mac OS X PHP bz2文件实现攻击漏洞
CVE-2007-1460Apple Mac OS X PHP ZIP文件实现攻击漏洞
CVE-2007-1449PHP-Nuke mainfile.php 目录遍历漏洞
CVE-2007-1458CARE2X 多个远程文件包含漏洞
CVE-2007-1457Christian Scheurer UniquE RAR File Library urarlib_get函数 缓冲区溢出漏洞
CVE-2007-1455Fantastico 多个绝对路径遍历漏洞
CVE-2007-1454PHP ext/filter HTML标签去除绕过漏洞
CVE-2007-1453PHP 缓冲区错误漏洞
CVE-2007-1452PHP ext/filter FDF Post数据过滤绕过漏洞
CVE-2007-1451GuppY 任意文件删除漏洞
CVE-2007-1450PHP-Nuke mainfile.php SQL注入漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2007-1456

No comments yet


Leave a comment