EIP-2026-107137
PRE-CVEFlatnux CMS 2013-01.17 - 'index.php' Local File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107137. PoCs published by DaOne.
AI-analyzed exploit summary This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Flatnux CMS by manipulating the 'theme' parameter with directory traversal sequences and a null byte. The PoC shows how to read arbitrary files (e.g., win.ini) by traversing directories and terminating the path with %00.
Description
Flatnux CMS 2013-01.17 - 'index.php' Local File Inclusion
Exploits (1)
This exploit demonstrates a Local File Inclusion (LFI) vulnerability in Flatnux CMS by manipulating the 'theme' parameter with directory traversal sequences and a null byte. The PoC shows how to read arbitrary files (e.g., win.ini) by traversing directories and terminating the path with %00.