Exploitation Summary
EIP tracks 1 public exploit for CVE-2001-0466. PoCs published by UkR hacking team.
AI-analyzed exploit summary The exploit demonstrates a directory traversal vulnerability in uStorekeeper Online Shopping System, allowing remote users to access arbitrary files or execute commands via '/../' sequences in the 'file' parameter. The PoC includes examples for reading sensitive files and executing system commands.
Description
Directory traversal vulnerability in ustorekeeper 1.61 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
Exploits (1)
The exploit demonstrates a directory traversal vulnerability in uStorekeeper Online Shopping System, allowing remote users to access arbitrary files or execute commands via '/../' sequences in the 'file' parameter. The PoC includes examples for reading sensitive files and executing system commands.