Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6167. PoCs published by StAkeR.
AI-analyzed exploit summary This is a writeup describing Local File Inclusion (LFI) and Cross-Site Scripting (XSS) vulnerabilities in miniPortail <= 2.2. It provides example payloads for exploitation but does not include functional exploit code.
Description
Directory traversal vulnerability in search.php in miniPortail 2.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lng parameter.
Exploits (1)
This is a writeup describing Local File Inclusion (LFI) and Cross-Site Scripting (XSS) vulnerabilities in miniPortail <= 2.2. It provides example payloads for exploitation but does not include functional exploit code.