JSBoard Local File Include File Disclosure Vulnerability

JSBoard is reported prone to an issue that may allow a remote attacker to view the contents of arbitrary Web server readable files on the local drive.

A successful attack allows an attacker to include and view any Web server readable file on the affected computer.

JSBoard version 2.0.9 and prior when running with PHP 'magic_quotes_gpc' disabled are reported prone to this vulnerability.


 

Privacy Statement
Copyright 2010, SecurityFocus