CVE-2007-2486
Motobit 1.3 and 1.5 - Directory Traversal via File Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2486. PoCs published by Dj7xpl.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in PStruh-CZ 1.3&1.5, allowing remote file disclosure via the 'download.asp' script. The PoC shows how to access arbitrary files by manipulating the 'File' parameter.
Description
Directory traversal vulnerability in download.asp in Motobit 1.3 and 1.5 (aka PStruh-CZ) allows remote attackers to read arbitrary files via a .. (dot dot) in the File parameter.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in PStruh-CZ 1.3&1.5, allowing remote file disclosure via the 'download.asp' script. The PoC shows how to access arbitrary files by manipulating the 'File' parameter.