CVE-2011-1665
PHPBoost 3.0 - Unauthenticated Sensitive Information Exposure via Predictable Backup Filenames
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2011-1665. PoCs published by KedAns-Dz.
AI-analyzed exploit summary This is a writeup describing a path traversal vulnerability in PHPBoost 3.0 that allows unauthorized download of database backup files. The exploit details the URL pattern to access backup SQL files without authentication.
Description
PHPBoost 3.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain backup SQL files via a direct request for predictable filenames in cache/backup/.
Exploits (1)
This is a writeup describing a path traversal vulnerability in PHPBoost 3.0 that allows unauthorized download of database backup files. The exploit details the URL pattern to access backup SQL files without authentication.