EXPLOITDB-EDB-9533

EXPLOITDB text VERIFIED WORKING POC
Exploit for CVE-2009-3188 - David Frohlich Phpsane - Code Injection
AI Analysis

This exploit demonstrates a Remote File Inclusion (RFI) vulnerability in phpSANE v0.5.0 via the 'file_save' parameter in save.php. The vulnerability allows an attacker to include arbitrary remote files, potentially leading to remote code execution.

Attack Type
RCE
Complexity
trivial
Reliability
reliable
MITRE ATT&CK
T1189 - Drive-by Compromise T1203 - Exploitation for Client Execution
Loading exploit code...
Download ZIP Password: eip
Source
Platform Exploitdb
Type webapps
Platform php
Language text
Files 1
Authors
CoBRa_21
Vulnerability
CVE-2009-3188
David Frohlich Phpsane - Code Injection