CVE-2003-1371
Nuked-Klan 1.3b - Information Disclosure via phpinfo op Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2003-1371. PoCs published by gregory Le Bras.
AI-analyzed exploit summary The exploit describes a vulnerability in Nuked-Klan beta 1.3 where insufficient sanitization of URI parameters in the 'Team', 'News', and 'Lien' modules allows remote execution of PHP functions like 'phpinfo'. This can lead to information disclosure.
Description
Nuked-Klan 1.3b, and possibly earlier versions, allows remote attackers to obtain sensitive server information via an op parameter set to phpinfo for the (1) Team, (2) News, or (3) Liens modules.
Exploits (1)
The exploit describes a vulnerability in Nuked-Klan beta 1.3 where insufficient sanitization of URI parameters in the 'Team', 'News', and 'Lien' modules allows remote execution of PHP functions like 'phpinfo'. This can lead to information disclosure.