Exploitation Summary
EIP tracks 1 public exploit for CVE-2018-12053. PoCs published by M3@Pandas.
AI-analyzed exploit summary This exploit demonstrates an arbitrary file deletion vulnerability in Schools Alert Management Script via the 'img' parameter in delete_img.php, allowing attackers to delete files using directory traversal sequences like '../'.
Description
Arbitrary File Deletion exists in PHP Scripts Mall Schools Alert Management Script via the img parameter in delete_img.php by using directory traversal.
Exploits (1)
This exploit demonstrates an arbitrary file deletion vulnerability in Schools Alert Management Script via the 'img' parameter in delete_img.php, allowing attackers to delete files using directory traversal sequences like '../'.
References (2)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N