Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-6843. PoCs published by Super-Crystal.
AI-analyzed exploit summary This exploit targets a local file inclusion vulnerability in Fantastico, allowing an attacker to include arbitrary files and execute local scripts in the context of the webserver process. It creates a malicious PHP wrapper to bypass restrictions and includes files via a crafted GET parameter.
Description
Directory traversal vulnerability in index.php in Fantastico, as used with cPanel 11.x, allows remote attackers to read arbitrary files via a .. (dot dot) in the sup3r parameter.
Exploits (1)
This exploit targets a local file inclusion vulnerability in Fantastico, allowing an attacker to include arbitrary files and execute local scripts in the context of the webserver process. It creates a malicious PHP wrapper to bypass restrictions and includes files via a crafted GET parameter.