Campsite 2.6.1 - 'Alias.php?g_documentRoot' Remote File Inclusion



EKU-ID: 35092 CVE: CVE-2006-5911;OSVDB-34187 OSVDB-ID:
Author: anonymous Published: 2007-05-08 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/23874/info

Campsite is prone to multiple remote file-include vulnerabilities.

Exploiting this issue allows remote attackers to execute code in the context of the webserver.

This issue affects Campsite 2.6.1. Earlier versions may also be affected.

http://www.example.com/classes/Alias.php?g_DocumentRoot=shell.txt?