BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Gallery 1.4 including file vulnerability Oct 12 2003 05:53AM
Bharat Mediratta (bharat menalto com)
From: "Peter Stöckli" <pcs (at) rootquest (dot) com [email concealed]>
...
> -Proof of concept-
> It is possible to include any php file from a remote host, and execute
> it on the target's server.

Thanks for the alert. It's disappointing that you made absolutely
no effort to contact us before announcing this vulnerability.
E...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus