Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Re: rConfig, the open source network device configuration management tool, Vulnerable to Local File Inclusion
Jun 06 2016 08:20PM
Gregory Pickett (gpickett71 yahoo com)
rConfig v3.1.1 introduced whitelisting. This is how to get past that. :)
Verification of Vulnerability (for v3.1.1)
The following steps can be carried out in duplicating this vulnerability.
Enter the following into your browser address bar:
[ more ]
Copyright 2010, SecurityFocus