CVE-2005-0788
LimeWire 4.1.2-4.5.6 - Arbitrary File Read via Gnutella GET Request
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-0788. PoCs published by lammat.
AI-analyzed exploit summary This exploit targets a directory traversal vulnerability in LimeWire versions 4.1.2 to 4.5.6, allowing remote attackers to read arbitrary files via a crafted HTTP request to the Gnutella service on port 6346. The script sends a malformed GET request with a traversal payload to retrieve the specified file.
Description
LimeWire 4.1.2 through 4.5.6 allows remote attackers to read arbitrary files by specifying the full pathname in a Gnutella GET request.
Exploits (1)
This exploit targets a directory traversal vulnerability in LimeWire versions 4.1.2 to 4.5.6, allowing remote attackers to read arbitrary files via a crafted HTTP request to the Gnutella service on port 6346. The script sends a malformed GET request with a traversal payload to retrieve the specified file.