CVE-2005-3947
PHP Upload Center - Directory Traversal via Filename Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3947. PoCs published by liz0.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in PHP Upload Center due to insufficient input sanitization. It allows an attacker to read arbitrary files on the server by manipulating the 'filename' parameter in the URL.
Description
Directory traversal vulnerability in index.php in PHP Upload Center allows remote attackers to read arbitrary files via "../" sequences in the filename parameter.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in PHP Upload Center due to insufficient input sanitization. It allows an attacker to read arbitrary files on the server by manipulating the 'filename' parameter in the URL.