Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-4712. PoCs published by dun.
AI-analyzed exploit summary This is a writeup describing a Local File Inclusion (LFI) vulnerability in LnBlog <= 0.9.0. The vulnerability allows an attacker to include arbitrary files via the 'plugin' parameter in showblog.php due to insufficient input validation.
Description
Directory traversal vulnerability in pages/showblog.php in LnBlog 0.9.0 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the plugin parameter.
Exploits (1)
This is a writeup describing a Local File Inclusion (LFI) vulnerability in LnBlog <= 0.9.0. The vulnerability allows an attacker to include arbitrary files via the 'plugin' parameter in showblog.php due to insufficient input validation.