CVE-2009-1510
KoschtIT Image Gallery 1.82 - Path Traversal via File Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2009-1510. PoCs published by ahmadbady.
AI-analyzed exploit summary This exploit demonstrates a local file inclusion (LFI) vulnerability in Koschtit Image Gallery v1.82. The vulnerability allows an attacker to read arbitrary files on the server by manipulating the 'file' parameter in 'ki_makepic.php' and 'ki_nojsdisplayimage.php'.
Description
Multiple directory traversal vulnerabilities in KoschtIT Image Gallery 1.82 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the file parameter to (1) ki_makepic.php and (2) ki_nojsdisplayimage.php in ki_base/.
Exploits (1)
This exploit demonstrates a local file inclusion (LFI) vulnerability in Koschtit Image Gallery v1.82. The vulnerability allows an attacker to read arbitrary files on the server by manipulating the 'file' parameter in 'ki_makepic.php' and 'ki_nojsdisplayimage.php'.