Booby 'renderer' Parameter Multiple Local and Remote File Include Vulnerabilities

Booby is prone to multiple local and remote file-include vulnerabilities because it fails to sufficiently sanitize user-supplied data.

Exploiting these issues may allow a remote attacker to obtain sensitive information or compromise the application and the underlying system; other attacks are also possible.

The issue affects Booby 1.0.1; other versions may also be vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus