Exploitation Summary
EIP tracks 1 public exploit for CVE-2001-1170. PoCs published by Gary O'Leary-Steele.
AI-analyzed exploit summary This exploit reads the world-readable homebet.log file from a default AmTote Homebet installation to extract account numbers and PINs. It demonstrates an information leakage vulnerability due to improper file permissions.
Description
AmTote International homebet program stores the homebet.log file in the homebet/ virtual directory, which allows remote attackers to steal account and PIN numbers.
Exploits (1)
This exploit reads the world-readable homebet.log file from a default AmTote Homebet installation to extract account numbers and PINs. It demonstrates an information leakage vulnerability due to improper file permissions.