Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-1100. PoCs published by laurent gaffie.
AI-analyzed exploit summary The provided text describes a local file inclusion (LFI) vulnerability in picKLE version 0.3, where unsanitized user input allows unauthorized file access. The example URL demonstrates path traversal to read '/etc/shadow'.
Description
Directory traversal vulnerability in download.php in Ahmet Sacan Pickle before 20070301 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
Exploits (1)
The provided text describes a local file inclusion (LFI) vulnerability in picKLE version 0.3, where unsanitized user input allows unauthorized file access. The example URL demonstrates path traversal to read '/etc/shadow'.