CVE-2008-5265
TNT Forum 0.9.4 - Remote File Inclusion via Modulo Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5265. PoCs published by CWH Underground.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in TNT Forum 0.9.4. The vulnerability arises from improper sanitization of the 'modulo' parameter in index.php, allowing an attacker to include arbitrary files via directory traversal sequences.
Description
Directory traversal vulnerability in index.php in TNT Forum 0.9.4, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the modulo parameter.
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in TNT Forum 0.9.4. The vulnerability arises from improper sanitization of the 'modulo' parameter in index.php, allowing an attacker to include arbitrary files via directory traversal sequences.