EIP-2026-112878
PRE-CVEUltimate PHP Board 1.0 final Beta - 'viewtopic.php' Directory Contents Browsing
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-112878. PoCs published by euronymous.
AI-analyzed exploit summary The exploit demonstrates a directory traversal vulnerability in Ultimate PHP Board (UPB) via a crafted request to viewtopic.php, leading to information disclosure of directory contents and file paths. The vulnerability arises from improper handling of user-supplied input in the 'id' parameter, resulting in error messages that leak sensitive path information.
Description
Ultimate PHP Board 1.0 final Beta - 'viewtopic.php' Directory Contents Browsing
Exploits (1)
The exploit demonstrates a directory traversal vulnerability in Ultimate PHP Board (UPB) via a crafted request to viewtopic.php, leading to information disclosure of directory contents and file paths. The vulnerability arises from improper handling of user-supplied input in the 'id' parameter, resulting in error messages that leak sensitive path information.