Basilix Webmail Incorrect File Permissions Vulnerability

Exerpted from original bugtraq post by <feedback@tamersahin.net>:

example exploit:

http://target/class/mysql.class
http://target/inc/sendmail.inc (settings.inc and etc.)


 

Privacy Statement
Copyright 2010, SecurityFocus