Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Zomplog Index.PHP Local File Include Vulnerability

Zomplog is prone to a local file-include vulnerability because the application fails to sanitize user-supplied input.

An attacker can exploit this issue by injecting malicious code into webserver log files and executing it in the context of the user running the webserver process; other attacks are also possible.







 

Privacy Statement
Copyright 2009, SecurityFocus