EIP-2026-111064
PRE-CVEPHPGedView 2.x - 'Editconfig_gedcom.php' Directory Traversal
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111064. PoCs published by Cedric Cochin.
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in PhpGedView versions 2.65.1 and prior, allowing remote attackers to access files outside the server root via the 'gedcom_config' parameter in 'editconfig_gedcom.php'. The example URL demonstrates accessing '/etc/passwd'.
Description
PHPGedView 2.x - 'Editconfig_gedcom.php' Directory Traversal
Exploits (1)
The provided text describes a directory traversal vulnerability in PhpGedView versions 2.65.1 and prior, allowing remote attackers to access files outside the server root via the 'gedcom_config' parameter in 'editconfig_gedcom.php'. The example URL demonstrates accessing '/etc/passwd'.