EIP-2026-118907
PRE-CVEminihttp file-sharing for net 1.5 - Directory Traversal
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-118907. PoCs published by Winter-Smith.
AI-analyzed exploit summary The provided text describes a directory traversal vulnerability in WebForums and File-Sharing for NET, where insufficient sanitization of user-supplied input allows attackers to access sensitive files outside the server root directory using '/../' sequences. The example demonstrates accessing 'user.ini' via a crafted URL.
Description
minihttp file-sharing for net 1.5 - Directory Traversal
Exploits (1)
The provided text describes a directory traversal vulnerability in WebForums and File-Sharing for NET, where insufficient sanitization of user-supplied input allows attackers to access sensitive files outside the server root directory using '/../' sequences. The example demonstrates accessing 'user.ini' via a crafted URL.