CVE-2004-1543
KorWeblog 1.6.2-cvs - Directory Traversal via Path Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-1543. PoCs published by Jeremy Bae.
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in KorWeblog software, allowing remote attackers to disclose directory listings outside the web root via crafted URI requests. No actual exploit code is present, only a description and example URI.
Description
Directory traversal vulnerability in viewimg.php in KorWeblog 1.6.2-cvs and earlier allows remote attackers to list arbitrary directories via a .. (dot dot) in the path parameter.
Exploits (1)
The provided text describes a directory traversal vulnerability in KorWeblog software, allowing remote attackers to disclose directory listings outside the web root via crafted URI requests. No actual exploit code is present, only a description and example URI.