Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-3036. PoCs published by CWH Underground.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in CMS little version 0.0.1. The vulnerability arises from improper input validation in the 'template' parameter of index.php, allowing an attacker to include arbitrary files from the server.
Description
Directory traversal vulnerability in index.php in CMS little 0.0.1 allows remote attackers to include and execute arbitrary local files, and probably remote files, via a .. (dot dot) in the template parameter.
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in CMS little version 0.0.1. The vulnerability arises from improper input validation in the 'template' parameter of index.php, allowing an attacker to include arbitrary files from the server.