Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
ShoutPro 1.5.2 - arbitrary code execution Apr 17 2007 07:59PM
jd2k2000 hotmail com
<?/*
File: shoutbox.php
Affects: ShoutPro 1.5.2 (may affect earlier versions)
Date: 17th April 2007

Issue Description:
========================================================================
===
ShoutPro 1.5.2 fails to fully sanitize user input ($shout) that it writes
to the shouts.php file when a...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus