CVE-2008-3384
Interact Learning Community Environment Interact 2.4.1 - Path Traversal via Help Module and File Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-3384. PoCs published by DSecRG.
AI-analyzed exploit summary This exploit demonstrates a Local File Include (LFI) vulnerability in Interact E-Learning System 2.4.1. The vulnerability allows an attacker to include arbitrary files via the 'module' and 'file' GET parameters in help/help.php.
Description
Multiple directory traversal vulnerabilities in help/help.php in Interact Learning Community Environment Interact 2.4.1 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) module and (2) file parameters.
Exploits (1)
This exploit demonstrates a Local File Include (LFI) vulnerability in Interact E-Learning System 2.4.1. The vulnerability allows an attacker to include arbitrary files via the 'module' and 'file' GET parameters in help/help.php.