BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Directory Traversal - EasyITSP <= 2.0.7 Feb 04 2013 08:10AM
MichaÅ? BÅ?aszczak (blaszczakm gmail com)
Directory Traversal - EasyITSP <= 2.0.7

EasyITSP - Telephone System VoIP

http://blaszczakm.blogspot.com
Michal Blaszczak

Search/Read/Delete filetype *.txt
Search/Play/Delete filetype *.wav - Voicemail

file: voicemail.php line: 220

foreach (glob("$vmdir/$_SESSION[phone]/$vmfolder/*.txt") as $fil...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus