Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Directory traversal vulnerability on Xoops/E-xoops CMS module "tutorials" Jun 16 2003 04:15PM
ac3 (ac3 www security-lab org)
An attacker can use this flaw to execute arbitrary code of his choice on the
remote system, run with the privileges of httpd.
The code can be written in any scripting language whose parser is run in the
remote system in cooporation with httpd, whether as module or executable.

Details:

This vul...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus