Exploitation Summary
EIP tracks 1 public exploit for CVE-2007-2778. PoCs published by MurderSkillz.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in MolyX BOARD 2.5.0 by manipulating the 'lang' parameter to read arbitrary files (e.g., /etc/passwd). The vulnerability is present in multiple files within the application.
Description
Multiple directory traversal vulnerabilities in MolyX BOARD 2.5.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter to index.php and other unspecified PHP scripts.
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in MolyX BOARD 2.5.0 by manipulating the 'lang' parameter to read arbitrary files (e.g., /etc/passwd). The vulnerability is present in multiple files within the application.