Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Zeroboard Print_Category.PHP Remote File Include Vulnerability

Zeroboard is reportedly affected by a remote PHP file include vulnerability. This issue is due to the application failing to properly sanitize user-supplied input to 'print_category.php'.

Remote attackers could potentially exploit this issue via the 'dir' variable to include a remote malicious PHP script, which will be executed in the context of the Web server hosting the vulnerable software.







 

Privacy Statement
Copyright 2008, SecurityFocus