Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-2978. PoCs published by CraCkEr.
AI-analyzed exploit summary This exploit demonstrates Remote File Inclusion (RFI), Local File Inclusion (LFI), and Cross-Site Scripting (XSS) vulnerabilities in Ourvideo CMS 9.5. It provides URLs to exploit these vulnerabilities by injecting malicious input into specific parameters.
Description
Directory traversal vulnerability in phpi/rss.php in Ourvideo CMS 9.5, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the prefix parameter.
Exploits (1)
This exploit demonstrates Remote File Inclusion (RFI), Local File Inclusion (LFI), and Cross-Site Scripting (XSS) vulnerabilities in Ourvideo CMS 9.5. It provides URLs to exploit these vulnerabilities by injecting malicious input into specific parameters.