CVE-2008-5883
mini-pub < 0.3 - Unauthenticated Path Traversal via sDir Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5883. PoCs published by GoLd_M.
AI-analyzed exploit summary The exploit demonstrates two vulnerabilities in mini-pub.php v0.3: a local directory traversal via the 'sDir' parameter and a file disclosure via the 'sFileName' parameter. Both POCs are provided with clear paths to exploit the flaws.
Description
Absolute path traversal vulnerability in front-end/dir.php in mini-pub 0.3 and earlier allows remote attackers to list arbitrary directories via a full pathname in the sDir parameter.
Exploits (1)
The exploit demonstrates two vulnerabilities in mini-pub.php v0.3: a local directory traversal via the 'sDir' parameter and a file disclosure via the 'sFileName' parameter. Both POCs are provided with clear paths to exploit the flaws.