CVE-2008-4075
D-iscussion Board 3.01 - Path Traversal via Topic Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-4075. PoCs published by SirGod.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in D-iscussion Board 3.01. The vulnerability allows an attacker to read arbitrary files on the server by manipulating the 'topic' parameter with a null byte (%00) to bypass file extension checks.
Description
Directory traversal vulnerability in index.php in D-iscussion Board 3.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the topic parameter.
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in D-iscussion Board 3.01. The vulnerability allows an attacker to read arbitrary files on the server by manipulating the 'topic' parameter with a null byte (%00) to bypass file extension checks.