Exploitation Summary
EIP tracks 1 public exploit for EIP-2026-112979. PoCs published by fred777.
AI-analyzed exploit summary The exploit demonstrates a local file inclusion (LFI) vulnerability in vbShout 5.2.2 via the 'do' parameter in modcp/vbshout.php and admincp/vbshout.php. The vulnerability allows authenticated users (mod/admin) to include arbitrary files using path traversal and a null-byte termination.
Description
vbShout 5.2.2 - Local/Remote File Inclusion
Exploits (1)
The exploit demonstrates a local file inclusion (LFI) vulnerability in vbShout 5.2.2 via the 'do' parameter in modcp/vbshout.php and admincp/vbshout.php. The vulnerability allows authenticated users (mod/admin) to include arbitrary files using path traversal and a null-byte termination.