Galaxy Scripts Mini File Host 'upload.php' POST Parameter Local File Include Vulnerability

Galaxy Scripts Mini File Host is prone to a local file-include vulnerability because it fails to sufficiently sanitize user-supplied data.

An attacker can exploit this issue to execute arbitrary server-side scripts and retrieve potentially sensitive information.

This issue affects Mini File Host 1.2.1 and prior versions.


 

Privacy Statement
Copyright 2010, SecurityFocus