CVE-2018-25408
HIGHThe Open ISES Project 3.30A Path Traversal Arbitrary File Download
Title source: cnaExploitation Summary
EIP tracks 1 public exploit for CVE-2018-25408. PoCs published by Ihsan Sencan.
AI-analyzed exploit summary The exploit demonstrates an arbitrary file download vulnerability in The Open ISES Project 3.30A via path traversal in the 'filename' parameter of the download.php script. It includes HTTP requests to download sensitive files like config.php and Windows/win.ini.
Description
The Open ISES Project 3.30A contains a path traversal vulnerability in the ajax/download.php endpoint that allows unauthenticated attackers to download arbitrary files by manipulating the filename parameter. Attackers can supply directory traversal sequences ../ in the filename parameter to access files outside the intended directory, including configuration files and system files.
Exploits (1)
The exploit demonstrates an arbitrary file download vulnerability in The Open ISES Project 3.30A via path traversal in the 'filename' parameter of the download.php script. It includes HTTP requests to download sensitive files like config.php and Windows/win.ini.
References (4)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N