Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Zomplog 'upload/force_download.php' Directory Traversal Vulnerability

Zomplog is prone to a directory-traversal vulnerability because it fails to properly sanitize user-supplied input.

A remote attacker can exploit this issue to retrieve the contents of arbitrary files in the context of the webserver process.

This issue affects Zomplog 3.8.2; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus