Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-1232. PoCs published by Simon Bonnard.
AI-analyzed exploit summary This exploit demonstrates a local file inclusion vulnerability in SQLiteManager 1.2.0 by manipulating the 'SQLiteManager_currentTheme' cookie parameter to traverse directories and include arbitrary files (e.g., /etc/passwd). The vulnerability arises from insufficient input sanitization.
Description
Directory traversal vulnerability in SQLiteManager 1.2.0 allows remote attackers to read arbitrary files via a .. (dot dot) in a SQLiteManager_currentTheme cookie.
Exploits (1)
This exploit demonstrates a local file inclusion vulnerability in SQLiteManager 1.2.0 by manipulating the 'SQLiteManager_currentTheme' cookie parameter to traverse directories and include arbitrary files (e.g., /etc/passwd). The vulnerability arises from insufficient input sanitization.