ttCMS Header.PHP Remote File Include Vulnerability

A remote file include vulnerability has been reported for ttCMS. Due to insufficient sanitization of some user-supplied variables by the 'header.php' script, it is possible for a remote attacker to include a malicious PHP file in a URL.


 

Privacy Statement
Copyright 2010, SecurityFocus