Jinzora Include_Path Remote File Include Vulnerability

Jinzora is susceptible to a remote file include vulnerability, due to lack of validation of the 'include_path' variable.

An attacker may leverage this issue to execute arbitrary server-side script code on an affected computer with the privileges of the Web server process. This may facilitate unauthorized access.


 

Privacy Statement
Copyright 2010, SecurityFocus