CVE-2008-5580
mini-pub 0.3 - Remote Command Execution via sFileName Argument
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5580. PoCs published by muuratsalo.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in mini-pub 0.3, including local file disclosure and command execution via improper input validation in the `sFileName` parameter. The PoC provides direct URLs to exploit these flaws.
Description
mini-pub.php/front-end/cat.php in mini-pub 0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the sFileName argument.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in mini-pub 0.3, including local file disclosure and command execution via improper input validation in the `sFileName` parameter. The PoC provides direct URLs to exploit these flaws.