Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-1755. PoCs published by HaCkeR_EgY.
AI-analyzed exploit summary This exploit demonstrates a remote file disclosure vulnerability in phaos 4.0.1's showSource.php. The script fails to properly validate the 'file' parameter, allowing arbitrary file reads via the highlight_file() function.
Description
Directory traversal vulnerability in the showSource function in showSource.php in World of Phaos 4.0.1 allows remote attackers to read arbitrary files via directory traversal sequences in the file parameter.
Exploits (1)
This exploit demonstrates a remote file disclosure vulnerability in phaos 4.0.1's showSource.php. The script fails to properly validate the 'file' parameter, allowing arbitrary file reads via the highlight_file() function.