CVE-2006-5028
SWsoft Plesk 7.5 Reload and 7.6 - Directory Traversal via File Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5028. PoCs published by GuanYu.
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in PLESK versions 7.5 Reload and prior, as well as 7.6 for Windows. The vulnerability allows an attacker to retrieve arbitrary files by manipulating the 'file' parameter in the URL.
Description
Directory traversal vulnerability in filemanager/filemanager.php in SWsoft Plesk 7.5 Reload and Plesk 7.6 for Microsoft Windows allows remote attackers to list arbitrary directories via a ../ (dot dot slash) in the file parameter in a chdir action.
Exploits (1)
The provided text describes a directory traversal vulnerability in PLESK versions 7.5 Reload and prior, as well as 7.6 for Windows. The vulnerability allows an attacker to retrieve arbitrary files by manipulating the 'file' parameter in the URL.