CVE-2008-4486
Yerba < 6.3 - Remote Code Execution via Path Traversal in mod Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-4486. PoCs published by Pepelux.
AI-analyzed exploit summary This exploit targets a Local File Inclusion (LFI) vulnerability in Yerba SACphp <= 6.3 by manipulating the 'mod' parameter to include arbitrary files. It sends a crafted POST request to include files via directory traversal sequences.
Description
Directory traversal vulnerability in index.php in SAC.php (SACphp), as used in Yerba 6.3 and earlier, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.
Exploits (2)
This exploit targets a Local File Inclusion (LFI) vulnerability in Yerba SACphp <= 6.3 by manipulating the 'mod' parameter to include arbitrary files. It sends a crafted POST request to include files via directory traversal sequences.
The exploit demonstrates multiple vulnerabilities in Yerba SACphp <= 6.3, including admin login bypass via cookie manipulation, privilege escalation, arbitrary database download, and arbitrary admin addition through crafted SID parameters. The PoC provides direct payloads for exploitation without requiring additional code.