Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Phorum Download File Disclosure Vulnerability

The Phorum download script is prone to directory traversal attacks. This could result in disclosure of sensitive files which are readable by the web server. This problem is due to insufficient sanitization of directory traversal sequences from user-supplied input.







 

Privacy Statement
Copyright 2009, SecurityFocus