CVE-2008-5581
mini-pub 0.3 - Remote File Inclusion via sFileName Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5581. PoCs published by muuratsalo.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in mini-pub 0.3, including local file disclosure and command execution via improper input validation in the `sFileName` parameter. The PoC provides direct URLs to exploit these flaws.
Description
PHP remote file inclusion vulnerability in mini-pub.php/front-end/img.php in mini-pub 0.3 allows remote attackers to execute arbitrary PHP code via a URL in the sFileName parameter.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in mini-pub 0.3, including local file disclosure and command execution via improper input validation in the `sFileName` parameter. The PoC provides direct URLs to exploit these flaws.