PHP-Nuke Modules.PHP NukeFixes Addon Remote Directory Traversal Vulnerability

PHP-Nuke NukeFixes Addon is prone to a directory traversal vulnerability. This is due to a lack of proper sanitization of user-supplied input.

A remote attacker may view files that are only intended to be accessible to authenticated and authorized users. Information obtained may be used in further attacks.


 

Privacy Statement
Copyright 2010, SecurityFocus