CVE-2006-6329
TorrentFlux 2.2 - Unauthenticated Arbitrary File Deletion via delfile Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6329. PoCs published by r0ut3r.
AI-analyzed exploit summary This exploit demonstrates arbitrary file creation, overwrite, deletion, and command execution in TorrentFlux 2.2 via unsanitized parameters. It leverages the 'alias_file', 'delfile', and 'kill' parameters to manipulate files and execute commands.
Description
index.php for TorrentFlux 2.2 allows remote attackers to delete files by specifying the target filename in the delfile parameter.
Exploits (1)
This exploit demonstrates arbitrary file creation, overwrite, deletion, and command execution in TorrentFlux 2.2 via unsanitized parameters. It leverages the 'alias_file', 'delfile', and 'kill' parameters to manipulate files and execute commands.