Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: [MajorSecurity #8]DreamAccount <= 3.1 - Remote File Include Vulnerability Jun 06 2006 03:10PM
admin majorsecurity de
Please update my advisory.

After posting up my advisory I have seen that 2 other php-files are also affected by this vulnerability.

Input passed to the "da_path" parameter in "auth.cookie.inc.php", "auth.header.inc.php" and

"auth.sessions.inc.php" is not properly verified, before it is used to ...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus