Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-2398. PoCs published by Morocco Security Team.
AI-analyzed exploit summary The provided text describes an information-disclosure and cross-site scripting vulnerability in Gphotos due to improper input sanitization. It includes a basic example URL demonstrating the issue but lacks executable exploit code.
Description
Directory traversal vulnerability in index.php in GPhotos 1.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the rep parameter.
Exploits (1)
The provided text describes an information-disclosure and cross-site scripting vulnerability in Gphotos due to improper input sanitization. It includes a basic example URL demonstrating the issue but lacks executable exploit code.