CVE-2008-1405
fuzzylime (cms) 3.01 - Remote Code Execution via admindir Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-1405. PoCs published by irk4z.
AI-analyzed exploit summary This exploit targets a Remote File Inclusion (RFI) vulnerability in Fuzzylime CMS <= 3.01. The vulnerability arises due to improper sanitization of the 'admindir' parameter in display.php, allowing an attacker to include arbitrary remote files.
Description
PHP remote file inclusion vulnerability in code/display.php in fuzzylime (cms) 3.01 allows remote attackers to execute arbitrary PHP code via a URL in the admindir parameter.
Exploits (1)
This exploit targets a Remote File Inclusion (RFI) vulnerability in Fuzzylime CMS <= 3.01. The vulnerability arises due to improper sanitization of the 'admindir' parameter in display.php, allowing an attacker to include arbitrary remote files.