ESTsoft InternetDisk Arbitrary File Upload and Script Execution Vulnerability

This issue can be exploited with a web client.

The following URI will demonstrate a filename that attackers may use to exploit this issue:
http://www.example.com/WebLink/yourid/somephpcode.php.kr


 

Privacy Statement
Copyright 2010, SecurityFocus