CVE-2005-4250
mcgallery_pro 2.2 - Directory Traversal via Language Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4250. PoCs published by r0t.
AI-analyzed exploit summary The provided text describes a local file inclusion (LFI) vulnerability in mcGallery PRO due to improper input sanitization. The example URL demonstrates how an attacker could exploit this by traversing directories to include arbitrary files.
Description
Directory traversal vulnerability in mcGallery PRO 2.2 and earlier allows remote attackers to read arbitrary files via the language parameter.
Exploits (1)
The provided text describes a local file inclusion (LFI) vulnerability in mcGallery PRO due to improper input sanitization. The example URL demonstrates how an attacker could exploit this by traversing directories to include arbitrary files.