Exploitation Summary
EIP tracks 1 public exploit for CVE-2023-49031. PoCs published by Yoshik0xF6.
AI-analyzed exploit summary The repository provides a detailed technical analysis of CVE-2023-49031, an unauthenticated local file inclusion (LFI) vulnerability in Tikit eMarketing version 6.8.3.0. It includes attack vectors, proof-of-concept details, and remediation steps, but lacks functional exploit code.
Description
Directory Traversal (Local File Inclusion) vulnerability in Tikit (now Advanced) eMarketing platform 6.8.3.0 allows a remote attacker to read arbitrary files and obtain sensitive information via a crafted payload to the filename parameter to the OpenLogFile endpoint.
Exploits (1)
The repository provides a detailed technical analysis of CVE-2023-49031, an unauthenticated local file inclusion (LFI) vulnerability in Tikit eMarketing version 6.8.3.0. It includes attack vectors, proof-of-concept details, and remediation steps, but lacks functional exploit code.
References (1)
Scores
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N