Lou Portail Admin_Module.PHP Remote File Include Vulnerability

Lou Portail is prone to a remote file-include vulnerability because it fails to sufficiently sanitize user-supplied data.

An attacker could leverage this issue to execute remote script code in the context of the affected webserver process. A successful exploit could lead to the compromise of the affected software. Local attacks are possible using directory-traversal strings; other attacks are also possible.

Version 1.4.1 is vulnerable to this issue; other versions may also be affected.


 

Privacy Statement
Copyright 2010, SecurityFocus