CVE-2007-5771
Flatnuke 3 - Unauthenticated Privilege Escalation via myforum%00 Cookie
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-5771. PoCs published by KiNgOfThEwOrLd.
AI-analyzed exploit summary This exploit demonstrates a privilege escalation vulnerability in Flatnuke3 by bypassing cookie validation using a null byte injection. It also highlights a PHP code execution vulnerability in the download module by manipulating directory descriptions.
Description
Flatnuke 3 (aka FlatnuX) allows remote attackers to obtain administrative access via a myforum%00 cookie.
Exploits (1)
This exploit demonstrates a privilege escalation vulnerability in Flatnuke3 by bypassing cookie validation using a null byte injection. It also highlights a PHP code execution vulnerability in the download module by manipulating directory descriptions.