CVE-2014-2383

EXPLOITED NUCLEI

dompdf < 0.6.1 - Arbitrary File Read via PHP Wrapper in input_file Parameter

Title source: llm
STIX 2.1

Exploitation Summary

CVE-2014-2383 has been observed exploited in the wild (reported by VulnCheck KEV). EIP tracks 2 public exploits from researchers including Portcullis, Relativ3Pa1n. A Nuclei detection template is also available.

AI-analyzed exploit summary This is a writeup describing an arbitrary file read vulnerability in dompdf v0.6.0. The vulnerability allows attackers to read local files using PHP wrappers if DOMPDF_ENABLE_PHP and DOMPDF_ENABLE_REMOTE are enabled.

Description

dompdf.php in dompdf before 0.6.1, when DOMPDF_ENABLE_PHP is enabled, allows context-dependent attackers to bypass chroot protections and read arbitrary files via a PHP protocol and wrappers in the input_file parameter, as demonstrated by a php://filter/read=convert.base64-encode/resource in the input_file parameter.

Exploits (2)

exploitdb WRITEUP VERIFIED
by Portcullis · textwebappsphp
https://www.exploit-db.com/exploits/33004

This is a writeup describing an arbitrary file read vulnerability in dompdf v0.6.0. The vulnerability allows attackers to read local files using PHP wrappers if DOMPDF_ENABLE_PHP and DOMPDF_ENABLE_REMOTE are enabled.

Classification
Writeup 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: dompdf v0.6.0
No auth needed
Prerequisites: DOMPDF_ENABLE_PHP enabled · DOMPDF_ENABLE_REMOTE enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →
nomisec WORKING POC 1 stars
by Relativ3Pa1n · remote
https://github.com/Relativ3Pa1n/CVE-2014-2383-LFI-to-RCE-Escalation

This repository provides a detailed proof-of-concept for exploiting CVE-2014-2383, a vulnerability in dompdf that allows LFI/RFI to be escalated to RCE via PHP wrappers and input stream manipulation.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: dompdf < 0.6.1
No auth needed
Prerequisites: DOMPDF_ENABLE_PHP enabled · Access to dompdf.php endpoint
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Nuclei Templates (1)

Dompdf < v0.6.0 - Local File Inclusion
MEDIUMVERIFIEDby 0x_Akoko,akincibor,ritikchaddha

Scores

EPSS 0.5489
EPSS Percentile 98.1%

Details

VulnCheck KEV 2025-06-07
CWE
CWE-200
Status published
Products (2)
dompdf/dompdf < 0.6.0
dompdf/dompdf 0.6.0 - 0.6.1Packagist
Published Apr 28, 2014
Tracked Since Feb 18, 2026