exploit-db-mirror/platforms/php/webapps/27926.txt
Offensive Security fffbf04102 Updated
2013-12-03 19:44:07 +00:00

7 lines
No EOL
356 B
Text
Executable file

source: http://www.securityfocus.com/bid/18185/info
phpMyDesktop|arcade is prone to a local file-include vulnerability. This may allow unauthorized users to view files and to execute local scripts.
An attacker may also be able to execute arbitrary code by way of uploaded images.
http://www.example.com/index.php?todo=showsubsite&subsite=[file]%00