Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6089. PoCs published by JosS.
AI-analyzed exploit summary This exploit demonstrates a directory traversal vulnerability in ScriptsEz Easy Image Downloader, allowing unauthorized access to local files via a crafted URL parameter. The PoC includes a live demo link and a clear example of exploiting the flaw to read /etc/passwd.
Description
Directory traversal vulnerability in main.php in ScriptsEz Easy Image Downloader allows remote attackers to read arbitrary files via a .. (dot dot) in the id parameter in a download action.
Exploits (1)
This exploit demonstrates a directory traversal vulnerability in ScriptsEz Easy Image Downloader, allowing unauthorized access to local files via a crafted URL parameter. The PoC includes a live demo link and a clear example of exploiting the flaw to read /etc/passwd.