WebFrame Local and Remote File Include Vulnerabilities

WebFrame is prone to a local file-include vulnerability and a remote file-include vulnerability because the application fails to sufficiently sanitize user-supplied input.

Exploiting these issues may allow a remote attacker to obtain sensitive information or compromise the application and the underlying computer; other attacks are also possible.

WebFrame 0.76 is vulnerable; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus