EIP-2026-105337
PRE-CVEawiki 20100125 - Multiple Local File Inclusions
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-105337. PoCs published by muuratsalo.
AI-analyzed exploit summary The code describes a local file inclusion (LFI) vulnerability in awiki 20100125, where unsanitized user input allows attackers to read arbitrary files (e.g., /etc/passwd) via the 'page' or 'scriptname' parameters. The vulnerability is due to improper input validation in the PHP script.
Description
awiki 20100125 - Multiple Local File Inclusions
Exploits (1)
The code describes a local file inclusion (LFI) vulnerability in awiki 20100125, where unsanitized user input allows attackers to read arbitrary files (e.g., /etc/passwd) via the 'page' or 'scriptname' parameters. The vulnerability is due to improper input validation in the PHP script.