Exploitation Summary
EIP tracks 4 public exploits for CVE-2007-0118. PoCs published by NetJackal.
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in EditTag 1.2, where insufficient sanitization of user-supplied input allows remote attackers to access arbitrary files on the webserver. The example URL demonstrates the injection point but lacks executable exploit code.
Description
Multiple absolute path traversal vulnerabilities in EditTag 1.2 allow remote attackers to read arbitrary files via an absolute pathname in the file parameter to (1) edittag.cgi, (2) edittag.pl, (3) edittag_mp.cgi, or (4) edittag_mp.pl.
Exploits (4)
The provided text describes a directory traversal vulnerability in EditTag 1.2, where insufficient sanitization of user-supplied input allows remote attackers to access arbitrary files on the webserver. The example URL demonstrates the injection point but lacks executable exploit code.
The provided text describes a directory traversal vulnerability in EditTag version 1.2, where insufficient sanitization of user-supplied input allows remote attackers to access arbitrary files on the webserver. The example URL demonstrates the injection point but lacks executable exploit code.
The provided text describes a directory traversal vulnerability in EditTag 1.2, where unsanitized user input in the 'file' parameter allows remote attackers to access arbitrary files on the webserver. No actual exploit code is included, only a description and example URL.
The provided text describes a directory traversal vulnerability in EditTag 1.2, where unsanitized user input in the 'file' parameter allows remote attackers to access arbitrary files on the server. No actual exploit code is included, only a description and example URL.