Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-3064. PoCs published by CoBRa_21.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Ve-EDIT v0.1.4 via the debug_php.php script. The vulnerability arises from unsanitized user input in the $_GET[filename] parameter, allowing arbitrary file inclusion.
Description
Directory traversal vulnerability in debugger/debug_php.php in Ve-EDIT 0.1.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the _GET[filename] parameter.
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Ve-EDIT v0.1.4 via the debug_php.php script. The vulnerability arises from unsanitized user input in the $_GET[filename] parameter, allowing arbitrary file inclusion.